Sign In
Home/EC-Council/312-40v2: Certified Cloud Security Engineer (CCSE) v2/Free questions

312-40v2: Certified Cloud Security Engineer (CCSE) v2 — Free Practice Questions

10 free sample questions from a bank of 40, with the correct answers and explanations. No signup required — start practising right now.

1Cindy Williams has been working as a cloud security engineer in an IT company situated in Austin, Texas. Owing to the robust security and cost-effective features provided by AWS, her organization adopted AWS cloud-based services. Cindy has deployed an application in the Amazon Elastic Compute Cloud (EC2) instance. Which of the following cloud computing service model does the Amazon EC2 instance represent?
  • SaaS
  • DaaS
  • PaaS
  • IaaS
Answer: D
2The TCK Bank adopts cloud for storing the private data of its customers. The bank usually explains its information sharing practices to its customers and safeguards sensitive data. However, there exist some security loopholes in its information sharing practices. Therefore, hackers could steal the critical data of the bank’s customers. In this situation, under which cloud compliance framework will the bank be penalized?
  • ITAR
  • GLBA
  • NIST
  • GDPR
Answer: B
3Tom Holland works as a cloud security engineer in an IT company located in Lansing, Michigan. His organization has adopted cloud-based services wherein user access, application, and data security are the responsibilities of the organization, and the OS, hypervisor, physical, infrastructure, and network security are the responsibilities of the cloud service provider. Based on the aforementioned cloud security shared responsibilities, which of the following cloud computing service models is enforced in Tom’s organization?
  • Software-as-a-Service
  • On-Premises
  • Infrastructure-as-a-Service
  • Platform-as-a-Service
Answer: C
4An organization, PARADIGM PlayStation, moved its infrastructure to a cloud as a security practice. It established an incident response team to monitor the hosted websites for security issues. While examining network access logs using SIEM, the incident response team came across some incidents that suggested that one of their websites was targeted by attackers and they successfully performed an SQL injection attack. Subsequently, the incident response team made the website and database server offline. In which of the following steps of the incident response lifecycle, the incident team determined to make that decision?
  • Containment
  • Analysis
  • Coordination and information sharing
  • Post-mortem
Answer: A
5Global CloudEnv is a cloud service provider that provides various cloud-based services to cloud consumers. The cloud service provider adheres to the framework that can be used as a tool to systematically assess cloud implementation by providing guidance on the security controls that should be implemented by specific actors within the cloud supply chain. It is used as the standard to assess the security posture of organizations on the Security, Trust, Assurance, and Risk (STAR) registry. Based on the given information, which of the following cybersecurity control frameworks does Global CloudEnv adhere to?
  • CDMI
  • CSA CAIQ
  • CSA CCM
  • ITU-T X.1601
Answer: C
6Global SoftTechSol is a multinational company that provides customized software solutions and services to various clients located in different countries. It uses a public cloud to host its applications and services. Global SoftTechSol uses Cloud Debugger to inspect the current state of a running application in real-time, find bugs, and understand the behavior of the code in production. Identify the service provider that provides the Cloud Debugger feature to Global SoftTechSol?
  • Google
  • IBM
  • Azure
  • AWS
Answer: A
7Samuel Jackson has been working as a cloud security engineer for the past 12 years in VolkSec Pvt. Ltd., whose applications are hosted in a private cloud. Owing to the increased number of users for its services, the organizations is finding it difficult to manage the on-premises data center. To overcome scalability and data storage issues, Samuel advised the management of his organization to migrate to a public cloud and shift the applications and data. Once the suggestion to migrate to public cloud was accepted by the management, Samuel was asked to select a cloud service provider. After extensive research on the available public cloud service providers, Samuel made his recommendation. Within a short period, Samuel along with his team successfully transferred all applications and data to the public cloud. Samuel’s team would like to configure and maintain the platform, infrastructure, and applications in the new cloud computing environment. Which component of a cloud platform and infrastructure provides tools and interfaces to Samuel’s team for configuring and maintaining the platform, infrastructure, and application?
  • Virtualization Component
  • Computer Component
  • Physical and Environment Component
  • Management Component
Answer: D
8Global InfoSec Solution Pvt. Ltd. is an IT company that develops mobile-based software and applications. For smooth, secure, and cost-effective facilitation of business, the organization uses public cloud services. Now, Global InfoSec Solution Pvt. Ltd. is encountering a vendor lock-in issue. What is vendor lock-in in cloud computing?
  • It is a situation in which a cloud consumer cannot switch to another cloud service provider without substantial switching costs
  • It is a situation in which a cloud service provider cannot switch to another cloud service broker without substantial switching costs
  • It is a situation in which a cloud consumer cannot switch to a cloud carrier without substantial switching costs
  • It is a situation in which a cloud consumer cannot switch to another cloud service broker without substantial switching costs
Answer: A
9Richard Roxburgh works as a cloud security engineer in an IT company. His organization was dissatisfied with the services of its previous cloud service provider. Therefore, in January 2020, his organization adopted AWS cloud-based services and shifted all workloads and data in the AWS cloud. Richard wants to provide complete security to the hosted applications before deployment and while running in the AWS ecosystem. Which of the following automated security assessment services provided by AWS can be used by Richard to improve application security and check the application for any type of vulnerability or deviation from the best practices automatically?
  • AWS CloudFormation
  • Amazon Inspector
  • AWS Control Tower
  • Amazon CloudFront
Answer: B
10GlobalCloud is a cloud service provider that offers various cloud-based secure and cost-effective services to cloud consumers. The customer base of this organization increased within a short period; thus, external auditing was performed on GlobalCloud. The auditor used spreadsheets, databases, and data analyzing software to analyze a large volume of data. Based on the given information, which cloud-based audit method was used by the auditor to collect the objective evidence?
  • CAAT
  • Re-Performance
  • Striping
  • Gap Analysis
Answer: A

Want the full bank of 40 questions for 312-40v2: Certified Cloud Security Engineer (CCSE) v2? See all practice exams.