
EC-CouncilCertified Cloud Security Engineer
Domain 4Objective 2
Incident Response in Cloud CCSE Practice Questions (Page 6)
Part of the Cloud Penetration Testing and Incident Response domain, which makes up ~20% of our current practice bank.
57questions here
12free pages
10concepts
Questions 26–30
- 26
Which of the following is a common cloud-specific threat vector that involves an attacker using stolen credentials to access cloud resources?
Select an answer first - 27
During the eradication phase of cloud incident response, what is the primary goal?
Select an answer first - 28
During initial triage of a cloud security alert, which of the following is the FIRST step an incident responder should take?
Select an answer first - 29
In cloud forensics, which of the following is considered volatile evidence that should be collected first?
Select an answer first - 30
A security team wants to automate the response to a suspected compromised Azure AD account. They want to automatically revoke the user's sessions and require re-authentication when a risky sign-in is detected. Which combination of Azure services should they use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCSE” is a trademark of its owner, used for identification only.