
EC-CouncilCloud Security Essentials
Domain 8Objective 2
Cloud Security Standards CSE Practice Questions (Page 6)
Part of the Cloud Compliance and Governance domain, which makes up ~13% of our current practice bank.
46questions here
10free pages
12concepts
Questions 26–30
- 26
A security architect is designing a cloud governance program and needs to select a set of standards that provide both a controls framework and implementation guidance. The architect wants to use a framework that is cloud-specific and can be mapped to multiple compliance regimes. Which combination of standards best meets this need?
Select an answer first - 27
A company is planning to process credit card transactions in a public cloud. The company's compliance team is reviewing the PCI DSS requirements and is confused about which responsibilities belong to the cloud provider and which belong to the company. The provider has a PCI DSS AoC and offers a managed database service. The company will store cardholder data in that database. Which of the following is the company's responsibility?
Select an answer first - 28
Which of the following is a framework that provides a set of security controls and best practices specifically for cloud computing, developed by a consortium of industry experts?
Select an answer first - 29
Which of the following is a widely recognized cloud-specific security standard that provides guidance on information security controls for cloud service providers and customers?
Select an answer first - 30
What is the purpose of mapping cloud security standards to organizational controls?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.