
EC-CouncilIoT Security Essentials
Domain 5Objective 1
Cloud Security and Cloud Vulnerabilities ISE Practice Questions (Page 4)
Part of the Cloud Security and Threat Intelligence domain, which makes up ~18% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–4 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)
43questions here
9free pages
5concepts
Questions 16–20
- 16
In the shared responsibility model for cloud security, which of the following is typically the responsibility of the cloud customer?
Select an answer first - 17
A security analyst notices unusual traffic from a cloud-based IoT device to an external IP address that is listed in a threat intelligence feed as a command-and-control (C2) server. What should the analyst do first?
Select an answer first - 18
A company operates in a jurisdiction that requires all personal data to be stored within the country. The company uses a global cloud provider that offers a region in that country. However, the provider's support team may access data from another country for troubleshooting. What is the best way to address this compliance concern?
Select an answer first - 19
A cloud security team is designing a defense-in-depth strategy for an IoT platform. They want to implement controls that detect and respond to misconfigurations in real time. Which combination of controls would best achieve this?
Select an answer first - 20
A developer creates a cloud function that processes IoT sensor data. The function uses an API key embedded in the source code to authenticate to a database. During a code review, this is flagged as a vulnerability. Which type of cloud vulnerability is this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ISE” is a trademark of its owner, used for identification only.