
EC-CouncilCloud Security Essentials
Domain 1Objective 4
Threats and Attacks in Cloud Environments CSE Practice Questions (Page 10)
Part of the Cloud Computing and Security Fundamentals domain, which makes up ~12% of our current practice bank.
56questions here
12free pages
11concepts
Questions 46–50
- 46
A company is concerned about the risk of a negligent insider accidentally exposing sensitive data in a cloud storage bucket. The company wants to implement a control that reduces the likelihood of this happening without hindering productivity. Which control is most appropriate?
Select an answer first - 47
A company has a multi-cloud environment (AWS and Azure). The security team wants to implement a unified approach to detect and respond to threats across both clouds. Which of the following is the most effective strategy?
Select an answer first - 48
Which of the following is a general mitigation approach for cloud threats?
Select an answer first - 49
A company runs a customer-facing web application on a cloud provider. An attacker launches a DDoS attack that floods the application's public IP address with UDP traffic. The company's on-premises firewall is not capable of handling the volume. Which mitigation approach should the company implement to maintain availability?
Select an answer first - 50
A healthcare company uses a cloud EHR system. A contractor with legitimate access to patient records accidentally emails a spreadsheet containing unencrypted patient data to the wrong external recipient. The company's incident response team is deciding how to respond. Which approach best balances legal obligations, risk, and operational impact?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.