
EC-CouncilCloud Security Essentials
Domain 7Objective 1
Identifying Cloud Security Risks CSE Practice Questions (Page 8)
Part of the Cloud Security Risk Assessment and Management domain, which makes up ~13% of our current practice bank.
45questions here
9free pages
7concepts
Questions 36–40
- 36
A vulnerability assessment of a cloud environment found that a development team has left a storage bucket publicly accessible. The team wants to identify other similar misconfigurations across their cloud accounts. Which method is most efficient?
Select an answer first - 37
A company's cloud environment was compromised because an employee's credentials were phished. The security team is updating the risk register. Which risk source should be documented as the primary trigger?
Select an answer first - 38
A healthcare startup is migrating its patient records to a public cloud. The compliance officer is concerned about data exposure due to multi-tenancy. The security team has been asked to identify the most significant cloud-specific risk that could lead to unauthorized access to patient data. Which risk should the team prioritize?
Select an answer first - 39
A risk analyst has identified multiple cloud risks, including a high-impact risk with low likelihood and a medium-impact risk with high likelihood. The analyst must document these risks for stakeholders who have limited time. Which documentation approach is most effective?
Select an answer first - 40
Which of the following is a common threat modeling technique used to systematically identify threats in cloud architectures?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.