Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified DevSecOps Engineer

Domain 6Objective 1

Container Security Concepts and Best Practices ECDE Practice Questions (Page 7)

Part of the Operate and Monitor Stage domain, which makes up ~21% of our current practice bank.

40questions here
8free pages
8concepts

Questions 31–35

  1. 31application · medium

    A microservices application runs in Kubernetes with a frontend service, a backend API, and a database. The security team wants to ensure that the frontend can only communicate with the backend API, and the backend API can only communicate with the database. Which configuration should be implemented?

    Select an answer first
  2. 32application · medium

    A healthcare organization must comply with HIPAA, which requires maintaining an audit trail of access to protected health information (PHI). The organization runs containerized applications that process PHI. What should they implement to meet this requirement?

    Select an answer first
  3. 33application · medium

    A company is migrating a legacy monolithic application to containers. The security team is concerned about the increased attack surface due to the use of privileged containers and shared kernel. They want to reduce the risk of a container breakout. What should they do?

    Select an answer first
  4. 34expert · hard

    A security team is troubleshooting a containerized application that is failing to start after a seccomp profile was applied. The application logs show 'Operation not permitted' when trying to bind to a socket. The team needs to fix the issue while maintaining the security posture. Which action should they take?

    Select an answer first
  5. 35application · medium

    A development team at a financial services company builds a Java application and packages it into a container image. The image is based on a public base image that includes a shell, build tools, and several unused libraries. The team wants to minimize the attack surface and ensure the image is tamper-evident before it is pushed to the internal registry. Which two actions should the team take?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECDE” is a trademark of its owner, used for identification only.