
EC-CouncilCertified SOC Analyst
Domain 6Objective 3
SOC for Cloud Environments CSA Practice Questions (Page 3)
Part of the Incident Response, Forensics and Cloud SOC domain, which makes up ~23% of our current practice bank.
50questions here
10free pages
7concepts
Questions 11–15
- 11
What is the primary benefit of using automation in cloud SOC workflows?
Select an answer first - 12
During a cloud incident, the SOC team needs to contain a compromised database instance. The database is replicated across multiple availability zones. Which containment action is most effective while preserving forensic evidence?
Select an answer first - 13
A SOC team needs to collect security-relevant logs from a cloud environment that includes virtual machines, containers, and serverless functions. Which approach is most comprehensive?
Select an answer first - 14
Which cloud threat detection technique is used to identify a misconfigured storage bucket that is publicly accessible?
Select an answer first - 15
In a multi-tenant cloud environment, what is a primary forensic challenge related to data isolation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSA” is a trademark of its owner, used for identification only.