
EC-CouncilCloud Security Essentials
Domain 2Objective 4
Multifactor Authentication and Least Privilege CSE Practice Questions (Page 5)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
50questions here
10free pages
8concepts
Questions 21–25
- 21
A security team wants to enforce least privilege for a cloud environment. They need to manage and monitor privileged access, including the ability to approve or deny access requests. Which tool should they use?
Select an answer first - 22
An organization is migrating to a cloud environment. They want to ensure that each user has only the permissions necessary for their job function. Which approach should they take?
Select an answer first - 23
A cloud environment has multiple teams: developers, testers, and operations. Each team needs different levels of access. What is the best way to manage permissions using RBAC?
Select an answer first - 24
A global company is deploying MFA for all users. They have a mix of employees in regions with unreliable internet and some who travel frequently. They also need to comply with regulations that require phishing-resistant MFA for privileged accounts. Which MFA strategy should they adopt?
Select an answer first - 25
A cloud administrator is designing IAM roles for a new application. The application needs to read from a storage bucket and write logs to a logging service. According to least privilege, what should the administrator do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.