1. Which cloud security control is designed to monitor the use of
cloud services and detect inappropriate behavior?
A. Intrusion Prevention System (IPS)
B. Security Information and Event Management (SIEM)
C. Data Loss Prevention (DLP)
D. Virtual Private Network (VPN)
Answer: b) Security Information and Event Management (SIEM)
Rationale: SIEM systems collect, analyze, and alert administrators
to suspicious activities or security incidents in real time, helping
detect potential misuse of cloud resources.
2. What type of encryption protects cloud data when it is being
transmitted between cloud services and users?
A. Symmetric encryption
B. End-to-end encryption
C. Asymmetric encryption
D. Transport Layer Security (TLS)
Answer: d) Transport Layer Security (TLS)
Rationale: TLS is used to secure data during transmission between
cloud services and users, ensuring confidentiality and integrity of
data in transit.
,3. Which of the following is an effective way to minimize the risk
of insider threats in a cloud environment?
A. Providing unrestricted access to cloud resources
B. Implementing strong authentication and access control policies
C. Reducing monitoring and auditing of cloud activities
D. Allowing employees to configure cloud security settings
Answer: b) Implementing strong authentication and access control
policies
Rationale: Strong authentication and access controls, along with
regular audits, can help mitigate the risk of insider threats by
limiting access to sensitive data and ensuring that employees only
have the permissions necessary for their roles.
4. Which type of cloud deployment model combines public and
private clouds to allow data and applications to be shared between
them?
A. Hybrid cloud
B. Community cloud
C. Public cloud
D. Private cloud
Answer: a) Hybrid cloud
, Rationale: A hybrid cloud allows organizations to use both private
and public cloud services, offering flexibility and scalability while
maintaining control over sensitive data.
5. What is the main advantage of using Identity and Access
Management (IAM) in a cloud environment?
A. Reduces the need for data backup
B. Improves application speed and performance
C. Controls and restricts access to cloud resources
D. Increases physical security of data centers
Answer: c) Controls and restricts access to cloud resources
Rationale: IAM enables the management of user identities and
their access to cloud resources. It ensures that only authorized
individuals or services can access specific cloud resources,
enhancing security.
6. What is the main function of a Security Information and Event
Management (SIEM) system in the cloud?
A. To monitor and respond to security incidents in real-time
B. To manage the physical security of cloud data centers
C. To enforce access controls and data encryption
D. To provide data storage for sensitive information
Answer: a) To monitor and respond to security incidents in real-
time
cloud services and detect inappropriate behavior?
A. Intrusion Prevention System (IPS)
B. Security Information and Event Management (SIEM)
C. Data Loss Prevention (DLP)
D. Virtual Private Network (VPN)
Answer: b) Security Information and Event Management (SIEM)
Rationale: SIEM systems collect, analyze, and alert administrators
to suspicious activities or security incidents in real time, helping
detect potential misuse of cloud resources.
2. What type of encryption protects cloud data when it is being
transmitted between cloud services and users?
A. Symmetric encryption
B. End-to-end encryption
C. Asymmetric encryption
D. Transport Layer Security (TLS)
Answer: d) Transport Layer Security (TLS)
Rationale: TLS is used to secure data during transmission between
cloud services and users, ensuring confidentiality and integrity of
data in transit.
,3. Which of the following is an effective way to minimize the risk
of insider threats in a cloud environment?
A. Providing unrestricted access to cloud resources
B. Implementing strong authentication and access control policies
C. Reducing monitoring and auditing of cloud activities
D. Allowing employees to configure cloud security settings
Answer: b) Implementing strong authentication and access control
policies
Rationale: Strong authentication and access controls, along with
regular audits, can help mitigate the risk of insider threats by
limiting access to sensitive data and ensuring that employees only
have the permissions necessary for their roles.
4. Which type of cloud deployment model combines public and
private clouds to allow data and applications to be shared between
them?
A. Hybrid cloud
B. Community cloud
C. Public cloud
D. Private cloud
Answer: a) Hybrid cloud
, Rationale: A hybrid cloud allows organizations to use both private
and public cloud services, offering flexibility and scalability while
maintaining control over sensitive data.
5. What is the main advantage of using Identity and Access
Management (IAM) in a cloud environment?
A. Reduces the need for data backup
B. Improves application speed and performance
C. Controls and restricts access to cloud resources
D. Increases physical security of data centers
Answer: c) Controls and restricts access to cloud resources
Rationale: IAM enables the management of user identities and
their access to cloud resources. It ensures that only authorized
individuals or services can access specific cloud resources,
enhancing security.
6. What is the main function of a Security Information and Event
Management (SIEM) system in the cloud?
A. To monitor and respond to security incidents in real-time
B. To manage the physical security of cloud data centers
C. To enforce access controls and data encryption
D. To provide data storage for sensitive information
Answer: a) To monitor and respond to security incidents in real-
time