
EC-CouncilCloud Security Essentials
Domain 6Objective 3
Cloud-Native Monitoring Solutions CSE Practice Questions (Page 1)
Part of the Cloud Security Monitoring and Incident Response domain, which makes up ~13% of our current practice bank.
45questions here
9free pages
6concepts
Questions 1–5
- 1
A company uses AWS and wants to monitor for potential credential theft by detecting when an access key is used from a new geographic location. They have CloudTrail enabled. Which cloud-native service can provide this detection without building custom logic?
Select an answer first - 2
Which cloud-native monitoring service is primarily used to record API activity and provide an audit trail of user actions in AWS?
Select an answer first - 3
A company using Google Cloud wants to monitor for suspicious IAM permission changes and receive alerts when a user is granted the Owner role. They have enabled Cloud Audit Logs. What should they configure to get real-time alerts?
Select an answer first - 4
A security analyst at a company using AWS needs to detect unauthorized API calls that create or modify IAM policies. The analyst wants a cloud-native solution that records the API activity and triggers an alert when specific IAM actions occur. Which combination of services should the analyst use?
Select an answer first - 5
A security team uses a cloud-native monitoring solution with a single alert rule that triggers on any failed login. The rule generates thousands of alerts per day, and the team has started ignoring them. They need to reduce noise while still detecting brute-force attacks. The team has limited time to manage the alert rules. What should they do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.