
EC-CouncilCloud Security Essentials
Domain 2Objective 5
IAM Auditing and Monitoring CSE Practice Questions (Page 1)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
36questions here
8free pages
5concepts
Questions 1–5
- 1
A security administrator at a multi-cloud company must ensure that every IAM change (user creation, permission modification, role assignment) is recorded with the identity of the actor, the timestamp, and the source IP address. The company uses AWS, Azure, and Google Cloud. What is the most effective way to meet this requirement?
Select an answer first - 2
An analyst notices that a user's IAM audit log shows a successful login from the user's home country at 9:00 AM and another successful login from a different country at 9:15 AM. The user is a developer who sometimes uses a VPN. The analyst must decide whether to escalate this as a potential compromise. What should the analyst do?
Select an answer first - 3
A security analyst is investigating a potential IAM-related security incident. The analyst has access to CloudTrail logs and notices that a user's access key was used to perform actions that the user has never performed before. The analyst also notices that the user's account was created recently. What is the most likely explanation?
Select an answer first - 4
A healthcare organization must provide auditors with evidence that only authorized personnel accessed patient records in the cloud over the last quarter. The organization uses a cloud IAM system that logs all access. What should the organization do to meet this requirement?
Select an answer first - 5
Which of the following is a common element found in an IAM compliance report?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.