Skip to content

Security Questions

Practice questions for Security topic in CompTIA Cloud+. 17 questions covering this domain.

17 questions3 easy9 medium5 hard
Q1
medium

A cloud administrator needs to allow application instances in a private subnet to download software updates from the internet without exposing those i...

Q2
easy

Which security control type is specifically designed to detect and respond to vulnerabilities in cloud environments by scanning for misconfigurations,...

Q3
medium

A cloud security team discovers that container images in their registry contain outdated libraries with known CVEs. Which security practice addresses ...

Q4
medium

An organization requires all users to prove their identity before accessing cloud resources, and access must be limited to only the resources necessar...

Q5
hard

During a cloud security audit, the team discovers that developer IAM accounts have AdministratorAccess policies attached directly. Several developers ...

Q6
medium

A cloud security engineer is implementing controls to ensure that an attacker who compromises a container cannot escalate privileges to access the hos...

Q7
medium

A cloud compliance team needs to demonstrate that their organization's cloud environment meets ISO 27001 requirements for information security managem...

Q8
easy

Which security framework requires organizations to protect cardholder data and is commonly referenced in cloud compliance requirements?

Q9
hard

A cloud architect is designing a multi-tenant SaaS application that must achieve SOC 2 Type II compliance. Which security control combination is most ...

Q10
medium

An organization must ensure that users from a corporate Active Directory can authenticate to cloud resources using their existing corporate credential...

Q11
medium

A cloud organization's security policy requires that all data written to cloud storage buckets must be encrypted, and the organization must control th...

Q12
medium

A cloud security team is conducting a vulnerability assessment of their cloud environment and discovers that several storage buckets are publicly acce...

Q13
medium

A cloud organization wants to automatically detect when any user in their cloud account performs actions that are not part of normal operational activ...

Q14
hard

A cloud security architect is designing a zero-trust network architecture for a cloud environment. Instead of trusting all traffic inside the VPC peri...

Q15
easy

Which type of cloud security control prevents unauthorized network access by filtering inbound and outbound traffic based on rules associated with clo...

Q16
hard

A cloud security team discovers that a developer accidentally committed an AWS IAM access key pair to a public GitHub repository three weeks ago. Acce...

Q17
hard

A cloud security team is responding to an alert that an instance in their environment is making unusual external connections to multiple IP addresses ...

Sign in to see all 17 questions

Create a free account to browse all questions — completely free during our launch phase.