Cloud Security Fundamentals: IAM, Tools, and Best Practices Questions with
Correct Answers | Verified Solutions
What are false positives? - ✔✔Benign events incorrectly flagged as malicious.
What are NACLs? - ✔✔Network Access Control Lists — subnet-level firewall
rules.
What are security policies (IAM policies)? - ✔✔JSON documents that define
what a user/role can or cannot do.
What does 'shared responsibility model' mean? - ✔✔Cloud provider secures the
infrastructure; the customer secures data, identity, apps, and configurations.
What does a Cloud Security Analyst I do here? - ✔✔Monitor cloud
environments, review alerts, support incident triage, and ensure secure
configurations.
What is a baseline? - ✔✔Normal system behavior used to detect anomalies.
What is a bastion host? - ✔✔A secure entry point for administrators to access
private instances.
What is a load balancer? - ✔✔Distributes traffic across multiple servers to
prevent overload.
, What is a misconfiguration attack? - ✔✔Exploiting exposed buckets, open ports,
open roles, or over-permissioned access.
What is a public vs private subnet? - ✔✔Public = internet-facing; Private =
internal-only.
What is a VPC? - ✔✔Virtual Private Cloud — isolated network in cloud
environment.
What is ABAC? - ✔✔Attribute-based access control (conditions, roles, context).
What is alert triage? - ✔✔Sorting alerts into severity levels and determining
next steps.
What is an AWS Security Group? - ✔✔A virtual firewall that controls
inbound/outbound traffic for EC2 instances.
What is an IOC? - ✔✔Indicator of Compromise (IP, hash, domain).
What is an open S3 bucket? - ✔✔Public storage container — major data breach
risk.
What is AWS CloudTrail? - ✔✔Logs API calls and user actions. Used for
investigation and monitoring.
Correct Answers | Verified Solutions
What are false positives? - ✔✔Benign events incorrectly flagged as malicious.
What are NACLs? - ✔✔Network Access Control Lists — subnet-level firewall
rules.
What are security policies (IAM policies)? - ✔✔JSON documents that define
what a user/role can or cannot do.
What does 'shared responsibility model' mean? - ✔✔Cloud provider secures the
infrastructure; the customer secures data, identity, apps, and configurations.
What does a Cloud Security Analyst I do here? - ✔✔Monitor cloud
environments, review alerts, support incident triage, and ensure secure
configurations.
What is a baseline? - ✔✔Normal system behavior used to detect anomalies.
What is a bastion host? - ✔✔A secure entry point for administrators to access
private instances.
What is a load balancer? - ✔✔Distributes traffic across multiple servers to
prevent overload.
, What is a misconfiguration attack? - ✔✔Exploiting exposed buckets, open ports,
open roles, or over-permissioned access.
What is a public vs private subnet? - ✔✔Public = internet-facing; Private =
internal-only.
What is a VPC? - ✔✔Virtual Private Cloud — isolated network in cloud
environment.
What is ABAC? - ✔✔Attribute-based access control (conditions, roles, context).
What is alert triage? - ✔✔Sorting alerts into severity levels and determining
next steps.
What is an AWS Security Group? - ✔✔A virtual firewall that controls
inbound/outbound traffic for EC2 instances.
What is an IOC? - ✔✔Indicator of Compromise (IP, hash, domain).
What is an open S3 bucket? - ✔✔Public storage container — major data breach
risk.
What is AWS CloudTrail? - ✔✔Logs API calls and user actions. Used for
investigation and monitoring.