Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCloud Security Essentials

Domain 5Objective 2

Web Application Firewall (WAF) and OWASP Top Ten CSE Practice Questions (Page 10)

Part of the Application Security in the Cloud domain, which makes up ~16% of our current practice bank.

65questions here
13free pages
16concepts

Questions 46–50

  1. 46foundation · easy

    How does a WAF enhance logging and monitoring?

    Select an answer first
  2. 47application · medium

    A company's web application returns credit card numbers in API responses. The security team wants to use a WAF to reduce the risk of sensitive data exposure. Which WAF feature should they enable?

    Select an answer first
  3. 48application · medium

    After enabling a managed XSS rule set in block mode, a company's support team reports that legitimate user comments containing HTML tags are being blocked. The security team wants to reduce false positives while still blocking real XSS attacks. What is the best approach?

    Select an answer first
  4. 49foundation · easy

    How can a WAF be integrated with a CDN for centralized security management?

    Select an answer first
  5. 50application · medium

    A company's web application has an admin panel at /admin. The security team wants to use a WAF to enforce that only requests from the internal corporate IP range can access /admin. Which WAF rule should they configure?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.