
EC-CouncilCertified Security Specialist
Domain 4Objective 5
Cloud Computing Threats and Countermeasures ECSS Practice Questions (Page 4)
Part of the Ethical Hacking Advanced Attacks and Penetration Testing domain, which makes up ~17% of our current practice bank.
43questions here
9free pages
6concepts
Questions 16–20
- 16
What is the first step in a typical cloud incident response process?
Select an answer first - 17
A company detects that a cloud storage bucket was accessed by an unauthorized external IP address. The bucket contains sensitive customer data. Which step should be taken FIRST in the incident response process?
Select an answer first - 18
Which cloud-specific threat involves an attacker using stolen credentials to gain unauthorized access to a cloud account, potentially leading to data theft or service disruption?
Select an answer first - 19
A company detects that an attacker has compromised an IAM user account and is launching unauthorized virtual machines in their AWS environment. The security team needs to respond quickly to stop the attack and preserve evidence. Which sequence of actions should they take?
Select an answer first - 20
A company uses a public cloud and wants to protect its web application from DDoS attacks. Which control is MOST appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.