
EC-CouncilCloud Security Essentials
Domain 3Objective 2
Encryption at Rest and in Transit CSE Practice Questions (Page 3)
Part of the Data Protection and Encryption in the Cloud domain, which makes up ~12% of our current practice bank.
55questions here
11free pages
15concepts
Questions 11–15
- 11
A company has a microservices architecture where service A calls service B over a private network. The security team wants to ensure that the API calls are encrypted and that service B can verify that the call is genuinely from service A. Which mechanism should be used?
Select an answer first - 12
A company processes credit card data and must comply with PCI DSS. The compliance team wants to ensure that cardholder data is protected both when stored and when transmitted over the network. Which combination of controls should they implement?
Select an answer first - 13
A company runs a cloud database that stores customer PII. The security team wants to encrypt the data at rest without requiring changes to the application code. They also want to use a customer-managed key that can be rotated. Which approach should they choose?
Select an answer first - 14
Which statement about asymmetric encryption is true?
Select an answer first - 15
What is a common method to encrypt data at rest in cloud block storage?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.