
EC-CouncilCloud Security Essentials
Domain 5Objective 3
Secure Coding Practices CSE Practice Questions (Page 9)
Part of the Application Security in the Cloud domain, which makes up ~16% of our current practice bank.
60questions here
12free pages
12concepts
Questions 41–45
- 41
A company is deploying a new web application on a cloud VM. The default installation includes several sample scripts, a database admin console, and debug endpoints. The security policy requires that only necessary services be exposed. What should the team do before going live?
Select an answer first - 42
A company is deploying a microservices application on a cloud platform. Each microservice has its own database and API. The security team wants to enforce least privilege across the services while minimizing operational overhead. Which approach is most appropriate?
Select an answer first - 43
A company is deploying a customer portal on a cloud platform. They want to ensure that users cannot access other users' data by manipulating URLs or API requests. Which combination of controls should they implement?
Select an answer first - 44
What is the primary purpose of using encryption for data in transit?
Select an answer first - 45
When should secure code review be performed in the development process?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.