
EC-CouncilCloud Security Essentials
Domain 2Objective 4
Multifactor Authentication and Least Privilege CSE Practice Questions (Page 6)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
50questions here
10free pages
8concepts
Questions 26–30
- 26
An organization is implementing MFA for a remote workforce. They are concerned about phishing attacks that trick users into approving fraudulent push notifications. Which MFA method should they deploy to specifically address this concern?
Select an answer first - 27
A cloud administrator is setting up a new project for a data analytics team. The team only needs to read data from a specific storage bucket and write results to another bucket. They do not need to manage any cloud resources. What is the most appropriate way to apply least privilege?
Select an answer first - 28
Which of the following correctly pairs an authentication factor with an example?
Select an answer first - 29
A company is implementing a zero-trust model for cloud access. They want to ensure that every access request is authenticated and authorized, and that users have the minimum necessary permissions. They are considering using conditional access policies, MFA, and JIT access. Which combination best implements zero-trust principles?
Select an answer first - 30
A company uses RBAC in its cloud environment. A developer needs to deploy code to a test environment but should not have access to production. Which RBAC approach should the administrator use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.