Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCloud Security Essentials

Domain 4Objective 5

Firewalls and Intrusion Detection CSE Practice Questions (Page 4)

Part of the Network Security in the Cloud domain, which makes up ~10% of our current practice bank.

50questions here
10free pages
12concepts

Questions 16–20

  1. 16application · medium

    A company runs a three-tier web application in a cloud VPC. The web tier must accept HTTPS from the internet, the application tier must only accept traffic from the web tier, and the database tier must only accept traffic from the application tier on port 3306. The security team wants to enforce these rules with a stateful, default-deny posture while minimizing administrative overhead. Which approach should they use?

    Select an answer first
  2. 17application · medium

    A security operations center (SOC) receives an alert from a network IDS indicating a possible brute-force attack against a cloud VM's SSH port. The SOC analyst needs to determine if the attack succeeded and what to do next. Which action should the analyst take first?

    Select an answer first
  3. 18expert · hard

    During a security incident, a cloud IDS alerts on a compromised VM that is sending large amounts of data to an external IP. The incident response team needs to contain the threat while preserving evidence for forensic analysis. The VM is running a critical application that cannot be stopped. Which containment action should they take first?

    Select an answer first
  4. 19expert · hard

    A security architect is designing monitoring for a cloud environment that includes both containerized microservices and traditional VMs. The team needs to detect both network-level attacks (e.g., port scans) and host-level attacks (e.g., privilege escalation inside a container). They have a limited budget and want to minimize the number of tools. Which combination should they choose?

    Select an answer first
  5. 20foundation · easy

    How can firewall and IDS alerts support incident response?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.