
EC-CouncilCloud Security Essentials
Domain 5Objective 5
Serverless and Container Security (Docker, Kubernetes) CSE Practice Questions (Page 10)
Part of the Application Security in the Cloud domain, which makes up ~16% of our current practice bank.
54questions here
11free pages
10concepts
Questions 46–50
- 46
A company has a serverless function that is triggered by messages from a queue. The function processes the messages and writes results to a database. Recently, the function has been failing due to unexpected input that causes it to crash. The security team suspects that the input is malicious and wants to protect the function. Which approach should they take?
Select an answer first - 47
A financial services company must comply with a regulation that requires logging all access to customer data. They use serverless functions to process this data. Which configuration should they implement to meet this requirement?
Select an answer first - 48
A company is designing a serverless application that will be publicly accessible. The security team is concerned about denial-of-service (DoS) attacks that could exhaust the function's concurrency limits. They want to implement controls to mitigate this risk. Which approach is most effective?
Select an answer first - 49
Why is using a minimal base image recommended for Docker containers?
Select an answer first - 50
A company runs a serverless application that processes financial transactions. The security team wants to detect anomalous behavior, such as unusual invocation patterns or unexpected data access, and also maintain an audit trail for compliance. Which approach should they implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.