
EC-CouncilNetwork Defense Essentials
Domain 4Objective 1
Virtualization Concepts and Security Considerations NDE Practice Questions (Page 4)
Part of the Virtualization and Cloud Computing Security domain, which makes up ~12% of our current practice bank.
50questions here
10free pages
7concepts
Questions 16–20
- 16
During a routine audit, a security team discovers that a VM has been running with a virtual TPM (vTPM) enabled, but the hypervisor's firmware has not been updated in over a year. The team also finds that the VM's snapshots are stored on the same datastore as the hypervisor's configuration files. Which risk is most directly increased by this combination?
Select an answer first - 17
A company hosts multiple web servers and a database server on virtual machines connected to the same virtual switch. After a web server is compromised, the attacker is able to scan and reach the database server directly. Which change would best prevent this lateral movement?
Select an answer first - 18
A VM was compromised due to an unpatched vulnerability. The security team wants to prevent similar compromises in other VMs. Which action is most effective?
Select an answer first - 19
A security architect is designing a hypervisor security policy. The requirement is to protect the hypervisor from compromised VMs while maintaining high availability. Which combination of controls is most effective?
Select an answer first - 20
An organization's virtualization team wants to enforce least privilege for hypervisor administrators. Which approach is most aligned with this principle?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “NDE” is a trademark of its owner, used for identification only.