
EC-CouncilCloud Security Essentials
Domain 5Objective 5
Serverless and Container Security (Docker, Kubernetes) CSE Practice Questions (Page 11)
Part of the Application Security in the Cloud domain, which makes up ~16% of our current practice bank.
54questions here
11free pages
10concepts
Questions 51–54
- 51
A DevOps team is building a Docker image for a web application. They want to ensure the image is as secure as possible. Which Dockerfile practice should they follow?
Select an answer first - 52
A company is migrating a legacy application to a serverless architecture. The security team is assessing the shared responsibility model. They want to know which security aspects remain the customer's responsibility in a serverless environment. Which of the following is the customer's responsibility?
Select an answer first - 53
A healthcare organization is deploying a containerized application that processes protected health information (PHI). The compliance team requires that all container images be scanned for vulnerabilities, that runtime activity be logged, and that only authorized personnel can deploy to production. Which combination of controls should be implemented?
Select an answer first - 54
Which principle should be applied when assigning IAM roles to serverless functions?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CSE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.