
EC-CouncilCloud Security Essentials
Domain 2Objective 5
IAM Auditing and Monitoring CSE Practice Questions (Page 3)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
36questions here
8free pages
5concepts
Questions 11–15
- 11
A security analyst is reviewing IAM audit logs and finds that a user's access key was used to call the 's3:PutObject' API from an IP address that is not associated with the user's usual location. The analyst also notices that the user has not changed their password in over a year. The company has a policy that requires passwords to be changed every 90 days. What is the most likely explanation for this anomaly?
Select an answer first - 12
What is the primary purpose of IAM compliance reporting?
Select an answer first - 13
Which method is commonly used to monitor IAM activities such as user sign-ins and access attempts in a cloud environment?
Select an answer first - 14
A company is investigating a potential security incident where a user's credentials may have been compromised. The company uses Azure AD. Which audit log should the investigator analyze first to understand the scope of the compromise?
Select an answer first - 15
Which of the following is a typical component of an IAM audit log entry?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.