1. Which of the following is an example of an automated security
feature that a cloud provider might offer?
A. Virtual firewall configuration
B. Real-time intrusion detection
C. Manual security patching
D. Physical server maintenance
Answer: b) Real-time intrusion detection
Rationale: Cloud providers often offer automated security features
such as real-time intrusion detection to continuously monitor and
respond to potential threats.
2. What is a major risk of storing sensitive data in the cloud
without adequate protection?
A. Data loss due to natural disasters
B. Unauthorized access to the data
C. Increased server costs
D. Improved performance of applications
Answer: b) Unauthorized access to the data
Rationale: Without proper security controls such as encryption
and access management, sensitive data stored in the cloud is at
risk of unauthorized access by malicious actors.
,3. What type of cloud security control is a firewall considered?
A. Preventative
B. Detective
C. Corrective
D. Compensating
Answer: a) Preventative
Rationale: Firewalls are a preventative security control that blocks
unauthorized access to a network or system, helping to reduce the
risk of cyberattacks.
4. What is the function of a cloud security architecture?
A. To monitor user behavior in the cloud
B. To implement policies for network performance optimization
C. To design and enforce a secure structure for cloud
environments
D. To manage cost-related aspects of cloud services
Answer: c) To design and enforce a secure structure for cloud
environments
Rationale: Cloud security architecture provides a structured
approach to designing secure cloud environments by identifying
and mitigating security risks at different layers.
, 5. What is the most critical factor in ensuring the security of
cloud-based data backups?
A. Redundancy and geographic distribution of backups
B. Storing backups on local servers
C. Relying on cloud providers’ backup services without
verification
D. Using unencrypted backups for faster recovery
Answer: a) Redundancy and geographic distribution of backups
Rationale: Redundancy and geographic distribution help protect
against data loss in case of disasters, providing secure and reliable
backups for disaster recovery.
6. Which of the following is an example of a cloud service
provider's responsibility under the shared responsibility model?
A. Configuring firewall rules for the customer’s cloud resources
B. Managing the security of the cloud infrastructure
C. Ensuring the customer's data is encrypted
D. Managing user permissions and access to cloud resources
Answer: b) Managing the security of the cloud infrastructure
Rationale: In the shared responsibility model, the cloud provider
is responsible for securing the underlying cloud infrastructure,
including hardware, networking, and physical security.
feature that a cloud provider might offer?
A. Virtual firewall configuration
B. Real-time intrusion detection
C. Manual security patching
D. Physical server maintenance
Answer: b) Real-time intrusion detection
Rationale: Cloud providers often offer automated security features
such as real-time intrusion detection to continuously monitor and
respond to potential threats.
2. What is a major risk of storing sensitive data in the cloud
without adequate protection?
A. Data loss due to natural disasters
B. Unauthorized access to the data
C. Increased server costs
D. Improved performance of applications
Answer: b) Unauthorized access to the data
Rationale: Without proper security controls such as encryption
and access management, sensitive data stored in the cloud is at
risk of unauthorized access by malicious actors.
,3. What type of cloud security control is a firewall considered?
A. Preventative
B. Detective
C. Corrective
D. Compensating
Answer: a) Preventative
Rationale: Firewalls are a preventative security control that blocks
unauthorized access to a network or system, helping to reduce the
risk of cyberattacks.
4. What is the function of a cloud security architecture?
A. To monitor user behavior in the cloud
B. To implement policies for network performance optimization
C. To design and enforce a secure structure for cloud
environments
D. To manage cost-related aspects of cloud services
Answer: c) To design and enforce a secure structure for cloud
environments
Rationale: Cloud security architecture provides a structured
approach to designing secure cloud environments by identifying
and mitigating security risks at different layers.
, 5. What is the most critical factor in ensuring the security of
cloud-based data backups?
A. Redundancy and geographic distribution of backups
B. Storing backups on local servers
C. Relying on cloud providers’ backup services without
verification
D. Using unencrypted backups for faster recovery
Answer: a) Redundancy and geographic distribution of backups
Rationale: Redundancy and geographic distribution help protect
against data loss in case of disasters, providing secure and reliable
backups for disaster recovery.
6. Which of the following is an example of a cloud service
provider's responsibility under the shared responsibility model?
A. Configuring firewall rules for the customer’s cloud resources
B. Managing the security of the cloud infrastructure
C. Ensuring the customer's data is encrypted
D. Managing user permissions and access to cloud resources
Answer: b) Managing the security of the cloud infrastructure
Rationale: In the shared responsibility model, the cloud provider
is responsible for securing the underlying cloud infrastructure,
including hardware, networking, and physical security.