
EC-CouncilCloud Security Essentials
Domain 3Objective 3
Customer vs. Cloud Provider Managed Keys CSE Practice Questions (Page 4)
Part of the Data Protection and Encryption in the Cloud domain, which makes up ~12% of our current practice bank.
20questions here
4free pages
5concepts
Questions 16–20
- 16
In cloud encryption, what is the defining characteristic of customer-managed keys?
Select an answer first - 17
A startup is building a prototype application and wants to encrypt data at rest in a cloud database. They have no dedicated security team and need to deploy quickly. They are not subject to any regulations that require customer control over keys. What is the most suitable key management approach?
Select an answer first - 18
A company is using a cloud provider's managed database service. They want to ensure that the provider's administrators cannot access the encryption keys. They also want to maintain the ability to rotate keys without involving the provider's support team. Which approach should they use?
Select an answer first - 19
Which of the following is a key management responsibility that typically belongs to the cloud provider when using provider-managed keys?
Select an answer first - 20
A small e-commerce company is launching a new website and wants to encrypt customer data at rest in a cloud database. They have a limited IT staff and want to minimize operational overhead. They do not have specific compliance requirements that demand customer control over keys. What is the most appropriate key management approach?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CSE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.