
EC-CouncilNetwork Defense Essentials
Domain 4Objective 4
Cloud Security Risks, Attacks, and Best Practices NDE Practice Questions (Page 8)
Part of the Virtualization and Cloud Computing Security domain, which makes up ~12% of our current practice bank.
39questions here
8free pages
3concepts
Questions 36–39
- 36
A company's cloud environment is being attacked by an insider who has legitimate access to the cloud console. The insider is exfiltrating data by copying it to a personal cloud storage account. The security team wants to detect and stop this activity without blocking legitimate data transfers. Which control is most effective?
Select an answer first - 37
A startup uses a cloud provider's object storage to host static website assets. The storage bucket is configured with a public-read policy. A developer accidentally uploads a file containing internal API keys to the bucket. The file is publicly accessible for 24 hours before the mistake is noticed. Which combination of controls would have most effectively prevented this exposure?
Select an answer first - 38
A software company uses a cloud-based API gateway to expose internal services to partners. The gateway uses API keys for authentication, but the keys are stored in plaintext in the application's configuration files. A developer accidentally commits the configuration file to a public repository. What is the most immediate and effective action to mitigate the risk?
Select an answer first - 39
A company's cloud environment has a mix of production and development resources. The security team wants to implement a monitoring and incident response plan. The company has a limited budget and cannot afford a full SIEM solution. Which approach provides the most effective monitoring and response capability within the constraint?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to NDE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.