
EC-CouncilCloud Security Essentials
Domain 4Objective 5
Firewalls and Intrusion Detection CSE Practice Questions (Page 6)
Part of the Network Security in the Cloud domain, which makes up ~10% of our current practice bank.
50questions here
10free pages
12concepts
Questions 26–30
- 26
In a cloud environment, what is the primary role of a firewall?
Select an answer first - 27
A security team is investigating a potential compromise of a single cloud VM. They need to determine whether an attacker executed malicious commands locally on the VM and whether any unauthorized processes were started. Which type of monitoring should they use to collect this evidence?
Select an answer first - 28
A retail company hosts a public-facing web application on cloud VMs behind a load balancer. The security team has noticed a spike in SQL injection attempts in the application logs, and the application team cannot patch the code immediately. Which control should be deployed to block these attacks at the edge without changing the application?
Select an answer first - 29
What is the primary purpose of a Web Application Firewall (WAF) in a cloud environment?
Select an answer first - 30
A security team is investigating a potential compromise. They have a network IDS that generates alerts, but they need to correlate the alerts with other data sources to understand the full scope. They have access to VPC flow logs, DNS logs, and the VM's OS audit logs. Which combination of data sources would provide the most comprehensive view of the attack?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.