Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Cloud Security Alliance CCSK - Certificate of Cloud Security Knowledge v5 (CCSKv5.0)

Page: 6 / 10
Total 332 questions

Which of the following is a common risk factor related to misconfiguration and inadequate change control in cybersecurity?

A.

Failure to update access controls after employee role changes

B.

Lack of sensitive data encryption

C.

Lack of 3rd party service provider specialized in patch management procedures

D.

Excessive SBOM focus

What are the primary security responsibilities of the cloud provider in compute virtualizations?

A.

Enforce isolation and maintain a secure virtualization infrastructure

B.

Monitor and log workloads and configure the security settings

C.

Enforce isolation and configure the security settings

D.

Maintain a secure virtualization infrastructure and configure the security settings

E.

Enforce isolation and monitor and log workloads

Your cloud and on-premises infrastructures should always use the same network address ranges.

A.

False

B.

True

In federated identity management, what role does the identity provider (IdP) play in relation to the relying party?

A.

The IdP relies on the relying party to authenticate and authorize users.

B.

The relying party makes assertions to the IdP about user authorizations.

C.

The IdP and relying party have no direct trust relationship.

D.

The IdP makes assertions to the relying party after building a trust relationship.

What is the primary function of Data Encryption Keys (DEK) in cloud security?

A.

To increase the speed of cloud services

B.

To encrypt application data

C.

To directly manage user access control

D.

To serve as the primary key for all cloud resources

How can virtual machine communications bypass network security controls?

A.

VM communications may use a virtual network on the same hardware host

B.

The guest OS can invoke stealth mode

C.

Hypervisors depend upon multiple network interfaces

D.

VM images can contain rootkits programmed to bypass firewalls

E.

Most network security systems do not recognize encrypted VM traffic

What is a primary objective during the Detection and Analysis phase of incident response?

A.

Developing and updating incident response policies

B.

Validating alerts and estimating the scope of incidents

C.

Performing detailed forensic investigations

D.

Implementing network segmentation and isolation

How does virtualized storage help avoid data loss if a drive fails?

A.

Multiple copies in different locations

B.

Drives are backed up, swapped, and archived constantly

C.

Full back ups weekly

D.

Data loss is unavoidable with drive failures

E.

Incremental backups daily

Which of the following best describes the primary function of Cloud Detection and Response (CDR) in cybersecurity?

A.

Detect and respond to security threats in the cloud

B.

Manage cloud-based applications

C.

Provide cost management for cloud services

D.

Optimize cloud storage performance

An organization deploys an AI application for fraud detection. Which threat is MOST likely to affect its AI model’s accuracy?

A.

Adversarial attacks

B.

DDoS attacks

C.

Third-party services

D.

Jailbreak attack