
EC-CouncilCertified DevSecOps Engineer
Domain 6Objective 1
Container Security Concepts and Best Practices ECDE Practice Questions (Page 2)
Part of the Operate and Monitor Stage domain, which makes up ~21% of our current practice bank.
40questions here
8free pages
8concepts
Questions 6–10
- 6
A company runs a Kubernetes cluster with a mix of legacy and modern applications. The security team wants to enforce that only images from the approved internal registry are deployed, but some legacy applications require images that are not signed. The team also needs to ensure that the policy does not break the existing workloads. Which approach should be taken?
Select an answer first - 7
A financial services company must demonstrate compliance with PCI DSS for its containerized payment application. The auditor requires evidence of who accessed the container platform and what changes were made. Which control should be implemented?
Select an answer first - 8
What is the primary purpose of maintaining an audit trail in a containerized environment?
Select an answer first - 9
What is the primary purpose of Role-Based Access Control (RBAC) in a container orchestration platform like Kubernetes?
Select an answer first - 10
A security analyst is reviewing a containerized environment and notices that all containers share the host's network namespace and run with the default Docker bridge. The analyst is concerned about the attack surface. Which change should be recommended?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.