
EC-CouncilCertified Network Defender
Domain 4Objective 2
Enterprise Cloud Security CND Practice Questions (Page 8)
Part of the Virtual, Cloud and Wireless Network Security domain, which makes up ~13% of our current practice bank.
43questions here
9free pages
6concepts
Questions 36–40
- 36
A cloud administrator is setting up a new virtual network in a public cloud. They want to ensure that only the application servers can be reached from the internet, and that database servers are not exposed. What is the best practice?
Select an answer first - 37
A cloud administrator notices unusual activity from a user account that has administrative privileges. The account was used to create new access keys and modify security group rules. Which type of cloud security threat is this?
Select an answer first - 38
A multinational company is moving customer data to a public cloud. The legal team requires that data be protected according to GDPR, which includes restrictions on international data transfers. What is the most appropriate action?
Select an answer first - 39
A company is using a cloud provider's IaaS offering. They have a web server that is accessible from the internet. The security team wants to protect the server from common web attacks, such as SQL injection and cross-site scripting. Which of the following is the MOST effective control?
Select an answer first - 40
A security administrator is configuring a cloud environment and wants to follow best practices for protecting data. Which practice is most effective for safeguarding data both in transit and at rest?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.