Security Questions
Practice questions for Security topic in CompTIA Cloud+. 17 questions covering this domain.
A cloud administrator needs to allow application instances in a private subnet to download software updates from the internet without exposing those i...
Which security control type is specifically designed to detect and respond to vulnerabilities in cloud environments by scanning for misconfigurations,...
A cloud security team discovers that container images in their registry contain outdated libraries with known CVEs. Which security practice addresses ...
An organization requires all users to prove their identity before accessing cloud resources, and access must be limited to only the resources necessar...
During a cloud security audit, the team discovers that developer IAM accounts have AdministratorAccess policies attached directly. Several developers ...
A cloud security engineer is implementing controls to ensure that an attacker who compromises a container cannot escalate privileges to access the hos...
A cloud compliance team needs to demonstrate that their organization's cloud environment meets ISO 27001 requirements for information security managem...
Which security framework requires organizations to protect cardholder data and is commonly referenced in cloud compliance requirements?
A cloud architect is designing a multi-tenant SaaS application that must achieve SOC 2 Type II compliance. Which security control combination is most ...
An organization must ensure that users from a corporate Active Directory can authenticate to cloud resources using their existing corporate credential...
A cloud organization's security policy requires that all data written to cloud storage buckets must be encrypted, and the organization must control th...
A cloud security team is conducting a vulnerability assessment of their cloud environment and discovers that several storage buckets are publicly acce...
A cloud organization wants to automatically detect when any user in their cloud account performs actions that are not part of normal operational activ...
A cloud security architect is designing a zero-trust network architecture for a cloud environment. Instead of trusting all traffic inside the VPC peri...
Which type of cloud security control prevents unauthorized network access by filtering inbound and outbound traffic based on rules associated with clo...
A cloud security team discovers that a developer accidentally committed an AWS IAM access key pair to a public GitHub repository three weeks ago. Acce...
A cloud security team is responding to an alert that an instance in their environment is making unusual external connections to multiple IP addresses ...
Sign in to see all 17 questions
Create a free account to browse all questions — completely free during our launch phase.