
EC-CouncilCertified Incident Handler
Domain 4Objective 2
Handling and Responding to Cloud Security Incidents ECIH Practice Questions (Page 8)
Part of the Web Application and Cloud Incidents domain, which makes up ~18% of our current practice bank.
48questions here
10free pages
6concepts
Questions 36–40
- 36
A company uses a multi-cloud environment with IaaS and PaaS services. The security team wants to centralize detection and monitoring of security incidents across all cloud providers. Which approach is most effective?
Select an answer first - 37
A company detects a crypto-mining malware on a set of VMs in a PaaS environment. The incident handler must contain the threat while preserving the ability to investigate. Which action is most effective?
Select an answer first - 38
A company is migrating its incident response process to the cloud. The team is used to having physical access to servers. What is the most significant challenge they will face?
Select an answer first - 39
A company detects a ransomware attack in a cloud environment. The attacker has encrypted data in a storage bucket and is demanding payment. The incident handler must contain the incident and recover data. Which action is most effective?
Select an answer first - 40
A security analyst is setting up monitoring for a hybrid cloud environment. The organization uses IaaS for critical workloads and SaaS for email. The analyst needs a unified view of security events across both environments. Which approach is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECIH” is a trademark of its owner, used for identification only.