
EC-CouncilCertified Cloud Security Engineer
Domain 5Objective 1
Forensic Investigation in Cloud CCSE Practice Questions (Page 5)
Part of the Cloud Forensics and Resilience domain, which makes up ~17% of our current practice bank.
43questions here
9free pages
7concepts
Questions 21–25
- 21
Which element is essential to include in a cloud forensic report to ensure its credibility?
Select an answer first - 22
Which tool is specifically designed for memory forensics and can be used to analyze a memory dump from a cloud VM?
Select an answer first - 23
During an incident response, a cloud administrator needs to collect non-volatile evidence from a compromised virtual machine. Which of the following is the most appropriate method?
Select an answer first - 24
A company is investigating a data breach that involved an Azure SQL database. The database has automated backups enabled, but the legal team requires evidence that the backups have not been tampered with. Which action best ensures the integrity of the backup evidence?
Select an answer first - 25
A security analyst is investigating a suspected compromise of a Linux virtual machine in Azure. The VM is still running. The analyst needs to capture volatile data that could be lost if the VM is shut down. Which action should the analyst take first?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCSE” is a trademark of its owner, used for identification only.