• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 3 out of 30 pages
Exam (elaborations)

CS-D320 ITCL 3202 Managing Cloud Security Comprehensive OA 2025 (With Solns).

Document preview thumbnail
Preview 3 out of 30 pages

CS-D320 ITCL 3202 Managing Cloud Security Comprehensive OA 2025 (With Solns).CS-D320 ITCL 3202 Managing Cloud Security Comprehensive OA 2025 (With Solns).

Content preview

CS – D320 ITCL 3202 Managing Cloud Security

Comprehensive Objective Assessment (Qns &
Ans)

2025


Multiple Choice
A company uses Infrastructure as a Service (IaaS) on AWS.
Which security responsibility rests primarily with the customer?
a) Physical security of data centers
b) Hypervisor patch management
c) Guest operating system configuration
d) Hardware maintenance
ANS: c) Guest operating system configuration
Rationale: In IaaS, the customer manages the OS while the
provider manages the infrastructure.

©2025

,Which of the following best mitigates unauthorized access to
sensitive data in a multi-tenant cloud environment?
a) Network segmentation
b) Data encryption at rest
c) Redundant storage
d) Software-defined networking
ANS: b) Data encryption at rest
Rationale: Encryption at rest helps protect data from unauthorized
access, isolating data between tenants.


A firm deploys a cloud-native application using containers and
orchestrates them with Kubernetes. What is the best practice to
secure inter-pod communications?
a) Use plaintext traffic
b) Assign public IPs to pods
c) Implement network policies and mutual TLS
d) Only use private clusters
ANS: c) Implement network policies and mutual TLS
Rationale: Network policies restrict traffic, while mutual TLS
secures communications.


©2025

, Which of these actions most directly addresses the risk of
excessive permissions in a cloud IAM configuration?
a) Single sign-on
b) Role-based access control (RBAC)
c) Audit logging
d) Data loss prevention
ANS: b) Role-based access control (RBAC)
Rationale: RBAC ensures users are granted minimal, necessary
access aligned with their roles.


What key protocol provides secure authentication and
authorization specifically to federate identities across multiple
cloud services?
a) SSL
b) SAML
c) IMAP
d) SNMP
ANS: b) SAML
Rationale: SAML is widely used for federated identity and access
management in cloud services.


Fill-in-the-Blank
©2025

Document information

Uploaded on
May 3, 2025
Number of pages
30
Written in
2024/2025
Type
Exam (elaborations)
Contains
Unknown
$18.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
testbank11
3.5
(4)
Sold
39
Followers
7
Items
4459
Last sold
3 months ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions