
EC-CouncilCertified Cloud Security Engineer
Domain 2Objective 1
Platform and Infrastructure Security in Cloud CCSE Practice Questions (Page 6)
Part of the Cloud Platform and Application Security domain, which makes up ~19% of our current practice bank.
53questions here
11free pages
12concepts
Questions 26–30
- 26
Which practice is a key aspect of secure DevOps in cloud environments?
Select an answer first - 27
Which encryption mechanism protects data while it is being transmitted between a client and a cloud service?
Select an answer first - 28
A cloud security engineer is deploying a new web application on a cloud platform. The application will be managed by a team of developers who need to deploy code but should not have the ability to modify network security groups or IAM policies. The organization requires that all infrastructure changes be reviewed and approved before they are applied. Which approach best meets these requirements?
Select an answer first - 29
A company's security team manages a multi-account cloud environment. They need to allow a new DevOps tool to programmatically create and manage EC2 instances in a specific account, but only from the tool's static public IP address. The team wants to avoid creating long-lived access keys. Which combination of controls should they implement?
Select an answer first - 30
A security team wants to detect and respond to runtime threats on their cloud VMs, such as unauthorized process execution and file modifications. They also want to correlate these findings with network traffic logs. Which solution should they implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCSE” is a trademark of its owner, used for identification only.