Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Security Specialist

Domain 2Objective 1

Virtualization and Cloud Computing Security ECSS Practice Questions (Page 2)

Part of the Network Defense Systems and Monitoring domain, which makes up ~14% of our current practice bank.

50questions here
10free pages
8concepts

Questions 6–10

  1. 6application · medium

    A developer exposes a cloud API without authentication, allowing anyone to call it. Which cloud threat is this, and what is the best countermeasure?

    Select an answer first
  2. 7expert · hard

    A large enterprise runs a private cloud on a Type 1 hypervisor. They must maintain high availability for a critical application. The application runs on two VMs in an active-passive cluster. The administrator needs to apply a critical security patch to the hypervisor, which requires a reboot of the host. The cluster supports live migration. What is the most secure approach that maintains availability?

    Select an answer first
  3. 8foundation · easy

    What is a primary security concern when migrating a virtual machine from one physical host to another?

    Select an answer first
  4. 9expert · hard

    A company is evaluating a public cloud IaaS provider. They have a compliance requirement that all administrative access to the cloud management console must be protected by multi-factor authentication (MFA). Which party is responsible for enforcing this requirement?

    Select an answer first
  5. 10expert · hard

    A company is migrating to a public cloud. They have strict compliance requirements that mandate encryption of all data at rest and in transit. They also need to maintain their own encryption keys for regulatory reasons. Which approach best satisfies these requirements?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.