WorksheetsFT_1
Total questions: 25
Worksheet time: 13mins
Which of the following best defines Infrastructure Security in a cloud environment?
Security of user credentials during authentication
Protection of virtual machines, networks, and physical servers from threats
Monitoring user activity in SaaS platforms
Data encryption at rest and in transit
Which security model focuses on ensuring only authorized users and systems have access to specific cloud resources?
Data Loss Prevention (DLP)
Identity and Access Management (IAM)
Network Access Control (NAC)
Security Information and Event Management (SIEM)
In cloud infrastructure, segmentation at the virtual network layer primarily helps in:
Improving data redundancy
Isolating workloads to limit lateral movement during an attack
Increasing latency for better monitoring
Enabling faster cloud provisioning
Which of the following is a major data privacy concern in multi-tenant cloud environments?
High availability
Data deduplication
Unauthorized data access
Network latency
Which of the following best describes the Shared Responsibility Model in cloud security?
Cloud provider handles all layers of security
Customer handles application security, provider handles physical and network security
Both share all responsibilities equally
Provider is responsible only for encryption
Network-level security in cloud environments commonly employs:
Firewalls and Intrusion Detection Systems
User authentication methods
Virtualization and APIs
Backup and disaster recovery tools
Which mechanism in cloud computing is most effective in mitigating Man-in-the-Middle (MITM) attacks?
Tokenization
SSL/TLS encryption
Hypervisor isolation
Key escrow systems
What is the main focus of Host-level security in the cloud?
Protecting APIs and SDKs
Securing the operating system and applications on virtual machines
Managing user identities
Encrypting data at rest
Application-level security in a cloud service should primarily defend against:
DDoS attacks
SQL Injection and Cross-Site Scripting (XSS)
Physical tampering
Virtual machine migration failures
Which of the following best ensures data confidentiality in cloud storage?
Hashing
Redundancy
Encryption
Tokenization
Jurisdictional issues in cloud computing arise mainly because:
Users lack encryption keys
Data is stored in multiple geographic locations under different laws
Cloud providers don’t support privacy agreements
Network latency differs by region
Which of the following is NOT a key objective of data security in the cloud?
Confidentiality
Integrity
Availability
Redundancy
In risk management for cloud systems, which phase involves assessing both the likelihood and impact of potential threats?
Risk Identification
Risk Analysis
Risk Monitoring
Risk Communication
Which cloud component is primarily responsible for Identity Federation?
Access Control List (ACL)
Security Token Service (STS)
API Gateway
Data Loss Prevention tool
Zero Trust Architecture in cloud security primarily assumes that:
All internal traffic is trusted by default
Only external traffic is verified
No user or system should be trusted by default
Trust is determined by data location
Which access control model grants access based on user roles within an organization?
MAC
DAC
RBAC
ABAC
In cloud computing, Data Sovereignty refers to:
Data ownership policies defined by the provider
Legal restrictions based on the physical location of stored data
Encryption key rotation frequency
Backup and recovery mechanisms
Which of the following can be used to ensure trust and reputation in cloud service providers?
ISO/IEC 27001 certification
Data compression algorithms
High bandwidth connectivity
Service performance monitoring only
A cloud user encrypts data before uploading it to the cloud to prevent the provider from reading it. This method mainly addresses which concern?
Availability
Data integrity
Data privacy
Data redundancy
Which of the following tools can enforce Access Control Policies in a cloud IAM system?
Group Policy Objects (GPOs)
Data compression algorithms
High bandwidth connectivity
Service performance monitoring only
Hypervisor vulnerabilities can affect which layer of cloud security?
Network level
Host level
Application level
Data level
The CIA Triad is fundamental to cloud security. It stands for:
Control, Integrity, Authentication
Confidentiality, Integrity, Availability
Compliance, Integrity, Authentication
Confidentiality, Isolation, Access
A company faces penalties due to non-compliance with GDPR while using a non-EU cloud provider. This issue is mainly related to:
Identity Federation
Jurisdictional and Data Privacy
Application-level vulnerability
Service Availability
Which layer in cloud architecture requires API Security to prevent unauthorized access?
Application Layer
Data Layer
Host Layer
Network Layer
To establish trust in a multi-cloud environment, organizations should primarily rely on:
Provider’s marketing claims
Independent third-party audits and compliance reports
User reviews
Local legal regulations only
