wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

FT_1

Total questions: 25

Worksheet time: 13mins

Name
Class
Date
1.

Which of the following best defines Infrastructure Security in a cloud environment?

a)

Security of user credentials during authentication

b)

Protection of virtual machines, networks, and physical servers from threats

c)

Monitoring user activity in SaaS platforms

d)

Data encryption at rest and in transit

2.

Which security model focuses on ensuring only authorized users and systems have access to specific cloud resources?

a)

Data Loss Prevention (DLP)

b)

Identity and Access Management (IAM)

c)

Network Access Control (NAC)

d)

Security Information and Event Management (SIEM)

3.

In cloud infrastructure, segmentation at the virtual network layer primarily helps in:

a)

Improving data redundancy

b)

Isolating workloads to limit lateral movement during an attack

c)

Increasing latency for better monitoring

d)

Enabling faster cloud provisioning

4.

Which of the following is a major data privacy concern in multi-tenant cloud environments?

a)

High availability

b)

Data deduplication

c)

Unauthorized data access

d)

Network latency

5.

Which of the following best describes the Shared Responsibility Model in cloud security?

a)

Cloud provider handles all layers of security

b)

Customer handles application security, provider handles physical and network security

c)

Both share all responsibilities equally

d)

Provider is responsible only for encryption

6.

Network-level security in cloud environments commonly employs:

a)

Firewalls and Intrusion Detection Systems

b)

User authentication methods

c)

Virtualization and APIs

d)

Backup and disaster recovery tools

7.

Which mechanism in cloud computing is most effective in mitigating Man-in-the-Middle (MITM) attacks?

a)

Tokenization

b)

SSL/TLS encryption

c)

Hypervisor isolation

d)

Key escrow systems

8.

What is the main focus of Host-level security in the cloud?

a)

Protecting APIs and SDKs

b)

Securing the operating system and applications on virtual machines

c)

Managing user identities

d)

Encrypting data at rest

9.

Application-level security in a cloud service should primarily defend against:

a)

DDoS attacks

b)

SQL Injection and Cross-Site Scripting (XSS)

c)

Physical tampering

d)

Virtual machine migration failures

10.

Which of the following best ensures data confidentiality in cloud storage?

a)

Hashing

b)

Redundancy

c)

Encryption

d)

Tokenization

11.

Jurisdictional issues in cloud computing arise mainly because:

a)

Users lack encryption keys

b)

Data is stored in multiple geographic locations under different laws

c)

Cloud providers don’t support privacy agreements

d)

Network latency differs by region

12.

Which of the following is NOT a key objective of data security in the cloud?

a)

Confidentiality

b)

Integrity

c)

Availability

d)

Redundancy

13.

In risk management for cloud systems, which phase involves assessing both the likelihood and impact of potential threats?

a)

Risk Identification

b)

Risk Analysis

c)

Risk Monitoring

d)

Risk Communication

14.

Which cloud component is primarily responsible for Identity Federation?

a)

Access Control List (ACL)

b)

Security Token Service (STS)

c)

API Gateway

d)

Data Loss Prevention tool

15.

Zero Trust Architecture in cloud security primarily assumes that:

a)

All internal traffic is trusted by default

b)

Only external traffic is verified

c)

No user or system should be trusted by default

d)

Trust is determined by data location

16.

Which access control model grants access based on user roles within an organization?

a)

MAC

b)

DAC

c)

RBAC

d)

ABAC

17.

In cloud computing, Data Sovereignty refers to:

a)

Data ownership policies defined by the provider

b)

Legal restrictions based on the physical location of stored data

c)

Encryption key rotation frequency

d)

Backup and recovery mechanisms

18.

Which of the following can be used to ensure trust and reputation in cloud service providers?

a)

ISO/IEC 27001 certification

b)

Data compression algorithms

c)

High bandwidth connectivity

d)

Service performance monitoring only

19.

A cloud user encrypts data before uploading it to the cloud to prevent the provider from reading it. This method mainly addresses which concern?

a)

Availability

b)

Data integrity

c)

Data privacy

d)

Data redundancy

20.

Which of the following tools can enforce Access Control Policies in a cloud IAM system?

a)

Group Policy Objects (GPOs)

b)

Data compression algorithms

c)

High bandwidth connectivity

d)

Service performance monitoring only

21.

Hypervisor vulnerabilities can affect which layer of cloud security?

a)

Network level

b)

Host level

c)

Application level

d)

Data level

22.

The CIA Triad is fundamental to cloud security. It stands for:

a)

Control, Integrity, Authentication

b)

Confidentiality, Integrity, Availability

c)

Compliance, Integrity, Authentication

d)

Confidentiality, Isolation, Access

23.

A company faces penalties due to non-compliance with GDPR while using a non-EU cloud provider. This issue is mainly related to:

a)

Identity Federation

b)

Jurisdictional and Data Privacy

c)

Application-level vulnerability

d)

Service Availability

24.

Which layer in cloud architecture requires API Security to prevent unauthorized access?

a)

Application Layer

b)

Data Layer

c)

Host Layer

d)

Network Layer

25.

To establish trust in a multi-cloud environment, organizations should primarily rely on:

a)

Provider’s marketing claims

b)

Independent third-party audits and compliance reports

c)

User reviews

d)

Local legal regulations only