
EC-CouncilCertified Security Specialist
Domain 4Objective 5
Cloud Computing Threats and Countermeasures ECSS Practice Questions (Page 2)
Part of the Ethical Hacking Advanced Attacks and Penetration Testing domain, which makes up ~17% of our current practice bank.
43questions here
9free pages
6concepts
Questions 6–10
- 6
Which cloud attack vector is characterized by an attacker exploiting vulnerabilities in the shared infrastructure to gain unauthorized access to another customer's data or resources?
Select an answer first - 7
What is the primary purpose of governance policies in a cloud environment?
Select an answer first - 8
Which cloud deployment model is characterized by infrastructure that is shared by several organizations with common interests, such as regulatory requirements or policy concerns?
Select an answer first - 9
A company is subject to GDPR and experiences a data breach involving personal data stored in a public cloud. The breach was caused by a misconfigured storage bucket. Which of the following steps is REQUIRED by GDPR?
Select an answer first - 10
A security team is evaluating the use of a cloud access security broker (CASB) to protect their SaaS applications. They want to gain visibility into user activity and enforce data loss prevention policies. Which CASB deployment mode is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.