
EC-CouncilDevSecOps Essentials
Domain 6Objective 1
Implementing Infrastructure as Code (IaC) DSE Practice Questions (Page 5)
Part of the DevSecOps Monitoring and Feedback domain, which makes up ~15% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 2–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
5concepts
Questions 21–25
- 21
Which tool is specifically designed to manage infrastructure across multiple cloud providers using a declarative configuration language?
Select an answer first - 22
Which scenario is the best fit for using AWS CloudFormation?
Select an answer first - 23
A team uses Terraform to manage its infrastructure. They notice that some resources have been manually changed in the cloud console, causing the actual state to differ from the Terraform configuration. What should they implement to detect and address this drift?
Select an answer first - 24
A company is adopting IaC and wants to ensure that secrets (e.g., database passwords, API keys) are not stored in plaintext in Terraform configuration files. They also want to integrate secret scanning into their CI/CD pipeline. Which approach is the most secure and practical?
Select an answer first - 25
A company is adopting IaC to improve security and consistency. They want to ensure that all infrastructure changes are reviewed, tested, and deployed in a consistent manner. They also want to avoid configuration drift. Which approach best meets these goals?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DSE” is a trademark of its owner, used for identification only.