
EC-CouncilCloud Security Essentials
Domain 7Objective 1
Identifying Cloud Security Risks CSE Practice Questions (Page 7)
Part of the Cloud Security Risk Assessment and Management domain, which makes up ~13% of our current practice bank.
45questions here
9free pages
7concepts
Questions 31–35
- 31
A company uses a third-party SaaS application for HR management. The SaaS provider recently suffered a data breach that exposed employee records. The company's security team is reviewing its risk register. Which risk source should be documented as the primary trigger for this incident?
Select an answer first - 32
Which of the following is a cloud-specific vulnerability that should be assessed during a vulnerability assessment?
Select an answer first - 33
A company is migrating its applications to the cloud. The security team has identified the following assets: a customer database with credit card numbers, a public marketing website, and internal employee email. The team must prioritize risk assessment efforts. Which asset should be classified as highest sensitivity and criticality?
Select an answer first - 34
What is a key difference between vulnerability assessment in traditional on-premises environments and in cloud environments?
Select an answer first - 35
Which of the following is an internal source of cloud security risk?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.