
EC-CouncilCertified Network Defender
Domain 4Objective 2
Enterprise Cloud Security CND Practice Questions (Page 3)
Part of the Virtual, Cloud and Wireless Network Security domain, which makes up ~13% of our current practice bank.
43questions here
9free pages
6concepts
Questions 11–15
- 11
In the shared responsibility model for cloud computing, which of the following is typically the responsibility of the cloud customer when using an IaaS offering?
Select an answer first - 12
A financial institution must meet strict regulatory requirements for data residency and also needs to handle unpredictable spikes in processing demand. They are considering a hybrid cloud approach. What is the primary security advantage of this model?
Select an answer first - 13
A company is using a SaaS email service. They want to ensure that emails containing sensitive information are encrypted both in transit and at rest. Which of the following controls should the company rely on the SaaS provider to implement?
Select an answer first - 14
A company is using a cloud provider's managed Kubernetes service. The security team wants to enforce network policies that restrict traffic between microservices. Which control is most appropriate?
Select an answer first - 15
A security analyst discovers that a cloud environment has been compromised. The attacker used a misconfigured storage bucket to upload malware and then used the cloud provider's API to create new virtual machines. Which combination of controls would have most effectively prevented this attack?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.