
EC-CouncilCloud Security Essentials
Domain 2Objective 2
Role-Based Access Control (RBAC) CSE Practice Questions (Page 5)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
48questions here
10free pages
10concepts
Questions 21–25
- 21
A financial services company requires that no single user can both create a vendor invoice and approve payment for that invoice. The company uses a cloud RBAC system. Which RBAC configuration best enforces this requirement?
Select an answer first - 22
A cloud architect is explaining RBAC to a new team member. The team member asks: 'When a user logs in and performs an action, what determines whether the action is allowed?' Which answer correctly describes the RBAC decision process?
Select an answer first - 23
A cloud security team is onboarding a new DevOps engineer who will only manage CI/CD pipeline configurations in a single project. The engineer should not be able to view or modify any other project's resources. The team wants to follow least privilege while keeping administrative overhead low. Which approach should the team take?
Select an answer first - 24
Which of the following is a best practice for designing RBAC policies in a cloud environment?
Select an answer first - 25
A company is migrating from AWS to Azure. In AWS, they use IAM roles attached to EC2 instances to grant the instances permissions to access S3. The team wants the equivalent behavior in Azure for a VM accessing Azure Storage. Which Azure RBAC mechanism should they use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.