
EC-CouncilCertified Incident Handler
Domain 4Objective 2
Handling and Responding to Cloud Security Incidents ECIH Practice Questions (Page 10)
Part of the Web Application and Cloud Incidents domain, which makes up ~18% of our current practice bank.
48questions here
10free pages
6concepts
Questions 46–48
- 46
During an incident in an IaaS environment, a compromised Linux VM is identified. The incident handler must preserve forensic evidence while minimizing disruption to the running system. Which approach is best?
Select an answer first - 47
A company detects that an attacker has gained access to a cloud storage bucket containing sensitive data. The incident handler must contain the incident. Which action is most effective?
Select an answer first - 48
A company is responding to a security incident in a hybrid cloud environment. Some workloads are on-premises, and some are in IaaS. The incident handler must coordinate the response across both environments. Which challenge is most significant?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to ECIH
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECIH” is a trademark of its owner, used for identification only.