
EC-CouncilIoT Security Essentials
Domain 5Objective 2
NSA Guidance and Secure Cloud Computing ISE Practice Questions (Page 8)
Part of the Cloud Security and Threat Intelligence domain, which makes up ~18% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–4 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
8concepts
Questions 36–40
- 36
What is the recommended first step in responding to a security incident in a cloud environment according to NSA guidance?
Select an answer first - 37
A government contractor must ensure its cloud deployment meets FedRAMP requirements. The security team needs to implement continuous monitoring and auditing. Which practice should they adopt?
Select an answer first - 38
A large enterprise uses a cloud identity provider and has thousands of employees. The security team wants to enforce NSA-recommended IAM controls, but the help desk is overwhelmed with access requests. Which strategy best reduces the burden while maintaining security?
Select an answer first - 39
A company is deploying a web application in the cloud. The security team wants to follow NSA guidance for network security by implementing defense-in-depth. Which set of controls should they implement?
Select an answer first - 40
A financial firm stores customer transaction data in a cloud object storage bucket. The compliance team requires that data be encrypted at rest and that encryption keys be rotated every 90 days. The firm wants to maintain control over the key lifecycle. Which approach should they choose?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ISE” is a trademark of its owner, used for identification only.