Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCloud Security Essentials

Domain 3Objective 2

Encryption at Rest and in Transit CSE Practice Questions (Page 9)

Part of the Data Protection and Encryption in the Cloud domain, which makes up ~12% of our current practice bank.

55questions here
11free pages
15concepts

Questions 41–45

  1. 41expert · hard

    A company uses envelope encryption with a cloud KMS. They need to rotate the key encryption key (KEK) annually for compliance, but they have millions of objects encrypted with the current KEK. They want to minimize the operational overhead and avoid re-encrypting all objects. Which approach should they take?

    Select an answer first
  2. 42expert · hard

    A security architect is designing a system where a client application sends sensitive data to a server. The data is large, and the server must authenticate the client. The architect wants to minimize CPU overhead on the client while ensuring that the data is encrypted and the client is authenticated. Which approach should they choose?

    Select an answer first
  3. 43foundation · easy

    What is an advantage of client-side encryption?

    Select an answer first
  4. 44foundation · easy

    What does TLS provide for data in transit?

    Select an answer first
  5. 45foundation · easy

    What is a key characteristic of symmetric encryption?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.