Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Cloud Security Alliance CCSK Practice Exam with Questions & Answers | Set: 6

Questions 51

CCM: In the CCM tool, “Encryption and Key Management” is an example of which of the following?

Options:
A.

Risk Impact

B.

Domain

C.

Control Specification

Questions 52

What is the primary reason dynamic and expansive cloud environments require agile security approaches?

Options:
A.

To reduce costs associated with physical hardware

B.

To simplify the deployment of virtual machines

C.

To quickly respond to evolving threats and changing infrastructure

D.

To ensure high availability and load balancing

Questions 53

When configured properly, logs can track every code, infrastructure, and configuration change and connect it back to the submitter and approver, including the test results.

Options:
A.

False

B.

True

Questions 54

Which of the following is one of the five essential characteristics of cloud computing as defined by NIST?

Options:
A.

Multi-tenancy

B.

Nation-state boundaries

C.

Measured service

D.

Unlimited bandwidth

E.

Hybrid clouds

Questions 55

Cloud applications can use virtual networks and other structures, for hyper-segregated environments.

Options:
A.

False

B.

True

Questions 56

What is the most significant security difference between traditional infrastructure and cloud computing?

Options:
A.

Management plane

B.

Intrusion detection options

C.

Secondary authentication factors

D.

Network access points

E.

Mobile security configuration options

Questions 57

What is true of security as it relates to cloud network infrastructure?

Options:
A.

You should apply cloud firewalls on a per-network basis.

B.

You should deploy your cloud firewalls identical to the existing firewalls.

C.

You should always open traffic between workloads in the same virtual subnet for better visibility.

D.

You should implement a default allow with cloud firewalls and then restrict as necessary.

E.

You should implement a default deny with cloud firewalls.

Questions 58

Which of the following best describes an aspect of PaaS services in relation to network security controls within a cloud environment?

Options:
A.

They override the VNet/VPC's network security controls by default

B.

They do not interact with the VNet/VPC’s network security controls

C.

They require manual configuration of network security controls, separate from the VNet/VPC

D.

They often inherit the network security controls of the underlying VNet/VPC

Questions 59

What key characteristic differentiates cloud networks from traditional networks?

Options:
A.

Cloud networks are software-defined networks (SDNs)

B.

Cloud networks rely on dedicated hardware appliances

C.

Cloud networks are less scalable than traditional networks

D.

Cloud networks have the same architecture as traditional networks

Questions 60

All cloud services utilize virtualization technologies.

Options:
A.

False

B.

True