
EC-CouncilCloud Security Essentials
Domain 5Objective 5
Serverless and Container Security (Docker, Kubernetes) CSE Practice Questions (Page 7)
Part of the Application Security in the Cloud domain, which makes up ~16% of our current practice bank.
54questions here
11free pages
10concepts
Questions 31–35
- 31
What is a key hardening technique for protecting the Kubernetes control plane?
Select an answer first - 32
A Kubernetes cluster has a misconfigured RBAC policy that grants a service account 'cluster-admin' privileges. The security team wants to limit the blast radius of a potential compromise. They plan to replace the service account with one that has only the permissions needed for the application. Which additional control should they implement to reduce the risk of privilege escalation?
Select an answer first - 33
How can an organization demonstrate compliance with regulatory standards for serverless applications?
Select an answer first - 34
A serverless function is experiencing unusual behavior: it is invoking itself in a loop, causing high costs. The security team suspects that the function's credentials were compromised. They want to stop the loop, revoke the compromised credentials, and prevent recurrence. Which sequence of actions should they take?
Select an answer first - 35
What is a key governance practice for container deployments?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.