Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCloud Security Essentials

Domain 4Objective 5

Firewalls and Intrusion Detection CSE Practice Questions (Page 2)

Part of the Network Security in the Cloud domain, which makes up ~10% of our current practice bank.

50questions here
10free pages
12concepts

Questions 6–10

  1. 6application · medium

    A security analyst notices unusual outbound traffic from a cloud VM to a known command-and-control (C2) IP address. The company has a network-based IDS that generates alerts but does not block traffic. The analyst needs to confirm the alert and gather more context before taking action. Which step should the analyst take first?

    Select an answer first
  2. 7foundation · easy

    Which of the following is a common type of firewall used in cloud environments?

    Select an answer first
  3. 8foundation · easy

    Which type of intrusion detection system is best suited to detect an attack that exploits a vulnerability in a web application running on a specific server?

    Select an answer first
  4. 9expert · hard

    A security analyst is investigating a potential breach. The IDS generated an alert for suspicious outbound traffic from a VM, but the firewall logs show that the traffic was allowed. The analyst needs to determine whether the alert was a true positive or a false positive. Which data source would be most useful to confirm the nature of the traffic?

    Select an answer first
  5. 10foundation · easy

    Which feature is characteristic of a Next-Generation Firewall (NGFW) in a cloud environment?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.