
EC-CouncilCloud Security Essentials
Domain 1Objective 5
Cloud Security Design Principles and Architecture CSE Practice Questions (Page 6)
Part of the Cloud Computing and Security Fundamentals domain, which makes up ~12% of our current practice bank.
48questions here
10free pages
9concepts
Questions 26–30
- 26
A company is moving a database to a PaaS cloud service. The database contains sensitive customer information. The security team wants to protect the data both at rest and in transit. Which combination of controls should be implemented?
Select an answer first - 27
A company is migrating its customer-facing web application to a cloud provider using IaaS. The security team is defining the shared responsibility boundaries. Which of the following tasks remains the customer's responsibility?
Select an answer first - 28
A company is using a SaaS email service and a PaaS database. They are subject to a regulation that requires them to control encryption keys for data at rest. Which of the following is the most appropriate way to meet this requirement?
Select an answer first - 29
Which data protection technique replaces sensitive data with a non-sensitive placeholder that has no exploitable value, but can be mapped back to the original value by authorized systems?
Select an answer first - 30
Which security design principle is best described by placing multiple layers of security controls so that if one layer fails, another layer provides protection?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.