
EC-CouncilCloud Security Essentials
Domain 5Objective 3
Secure Coding Practices CSE Practice Questions (Page 8)
Part of the Application Security in the Cloud domain, which makes up ~16% of our current practice bank.
60questions here
12free pages
12concepts
Questions 36–40
- 36
Which of the following is a common output of a threat modeling exercise?
Select an answer first - 37
A company's cloud application logs all user actions, but the logs contain sensitive data such as credit card numbers and passwords. The security team must reduce the risk of data exposure in logs while maintaining the ability to audit user actions. What should they do?
Select an answer first - 38
A company is adopting a secure development lifecycle (SDL) for a new cloud application. They want to ensure that security is integrated without slowing down the development process. Which approach is most effective?
Select an answer first - 39
What is the difference between static and dynamic application security testing?
Select an answer first - 40
Which of the following is a core component of secure authentication and session management?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.