
EC-CouncilCloud Security Essentials
Domain 6Objective 4
Continuous Security Monitoring Strategies CSE Practice Questions (Page 1)
Part of the Cloud Security Monitoring and Incident Response domain, which makes up ~13% of our current practice bank.
52questions here
11free pages
8concepts
Questions 1–5
- 1
A security analyst is investigating a suspected data exfiltration from a cloud storage bucket. They need to determine whether data was accessed by an unauthorized user. Which combination of monitoring data sources would provide the most complete evidence?
Select an answer first - 2
A security analyst is reviewing cloud activity logs and notices that a user who typically logs in from the US is now logging in from a foreign country at unusual hours. The analyst wants to determine if this is a potential security incident. What is the most appropriate next step?
Select an answer first - 3
A SOC receives an alert from their continuous monitoring system about a potential data exfiltration from a cloud storage bucket. The alert includes the source IP, the user account, and the files accessed. According to incident response best practices, what should the SOC do first?
Select an answer first - 4
A company uses a multi-cloud environment (AWS and Azure). They want a unified continuous monitoring solution that can correlate security events across both platforms. Which approach is most appropriate?
Select an answer first - 5
A company is moving from periodic security reviews to continuous monitoring. They want to ensure that the transition improves their security posture. Which change is most indicative of a successful transition?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.