
EC-CouncilCloud Security Essentials
Domain 4Objective 5
Firewalls and Intrusion Detection CSE Practice Questions (Page 7)
Part of the Network Security in the Cloud domain, which makes up ~10% of our current practice bank.
50questions here
10free pages
12concepts
Questions 31–35
- 31
A company runs a containerized application on a managed Kubernetes service. They need to detect malicious activity inside individual containers, such as unauthorized process execution or file system changes. They already have a network-based IDS monitoring east-west traffic. Which additional control should they implement?
Select an answer first - 32
What is the primary difference between host-based and network-based intrusion detection systems?
Select an answer first - 33
During incident response, what is the first step when a firewall or IDS alert is received?
Select an answer first - 34
Why is logging important for firewall and IDS in a cloud environment?
Select an answer first - 35
When implementing firewall rules in a cloud environment, what should be specified in each rule?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.