
EC-CouncilEthical Hacking Essentials
Domain 8Objective 2
Cloud Computing Threats and Attacks EHE Practice Questions (Page 8)
Part of the Cloud Computing and Penetration Testing domain, which makes up ~12% of our current practice bank.
39questions here
8free pages
4concepts
Questions 36–39
- 36
A multinational company must comply with data residency laws that require customer data to remain within the country of origin. They are considering a public cloud provider that offers regions in multiple countries. Which approach best addresses the compliance risk while maintaining operational efficiency?
Select an answer first - 37
A company is subject to a regulation that requires encryption of all data at rest. They are using a cloud provider that offers server-side encryption with provider-managed keys. The compliance team is concerned that the provider could access the data. Which option best addresses the compliance team's concern?
Select an answer first - 38
A company is evaluating a public cloud provider for hosting a healthcare application. The provider offers strong encryption and access controls, but the company is concerned about the risk of other tenants on the same infrastructure. Which additional control would best mitigate multi-tenancy risks?
Select an answer first - 39
Which of the following is a primary attack vector in cloud computing that involves exploiting weaknesses in the interfaces that customers use to manage their cloud resources?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to EHE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.