WorksheetsFT-3
Total questions: 25
Worksheet time: 13mins
Which of the following is a primary security concern in multi-tenancy cloud environments?
Low CPU utilization
Tenant data isolation
Redundant hardware
Network latency
IBM Security Virtual Server Protection primarily safeguards which cloud layer?
SaaS
PaaS
IaaS
Database Layer
What is the main purpose of virtualization-based sandboxing in cloud security?
Resource optimization
Secure code execution isolation
Multi-tenancy management
Load balancing
Which of the following is a best practice for ensuring cloud storage confidentiality?
Using RAID-5 configuration
Encrypting data at rest and in transit
Disabling access logs
Using shared credentials
The Host-based Intrusion Detection and Prevention System (HIDPS) in cloud infrastructure mainly monitors:
Network traffic between data centers
Application layer only
Activity on individual virtual machines
Hardware-level operations
What is the main challenge in cloud log management?
Lack of computing power
Centralized storage and correlation of distributed logs
Slow network access
Weak encryption
DLP tools in cloud environments primarily prevent:
Hardware failure
Unauthorized data exfiltration
Bandwidth overload
Software updates
Security Governance ensures that:
Security is managed independently of business objectives
Compliance, risk management, and policies align with business goals
Only IT staff handle all compliance audits
Cloud providers control client data access fully
Which of the following is not a typical cloud security challenge?
Multi-tenancy risks
Virtual machine sprawl
Strong encryption implementation
Insider threats
What is a key risk associated with snapshotting VMs in the cloud?
Data duplication
Snapshot tampering or unauthorized access
CPU overload
Data compression failure
ESX file system security focuses mainly on:
Enabling user collaboration
Isolating VM data stores
Data deduplication
Preventing hardware failure
The ESXi hypervisor minimizes attack surface by:
Running multiple guest OS simultaneously
Eliminating general-purpose OS components
Disabling encryption
Running in user mode only
Which of the following frameworks is most relevant for cloud security management?
ISO/IEC 27017
ISO 9001
ITIL
COBOL
Which layer has the least control over availability for the consumer?
IaaS
PaaS
SaaS
DaaS
The most secure cloud authentication model combines:
Static passwords and firewalls
Multi-factor authentication and encryption
Single sign-on and cookies
Username and password only
OAuth 2.0 protocol is primarily used for:
Encrypting client data
Authorizing client access without sharing credentials
Managing DNS records
Logging cloud events
In cloud contracting, the Service Level Agreement (SLA) primarily defines:
Application source code
Security breach penalties and uptime commitments
Customer payment schedules only
Software license expiry
The “pay-as-you-go” model in cloud computing provides:
Static billing
Resource-based dynamic billing
Free access for all users
Long-term licensing
Open-source cloud platforms like Eucalyptus provide which main advantage?
Vendor lock-in
Resource-based dynamic billing
Greater flexibility and control
Long-term licensing
X.509 certificates are mainly used for:
Data compression
Digital identity verification and encryption
File storage
Network routing
OpenSSL provides which type of functionality?
Web hosting
Cryptographic operations like key generation and TLS support
Data compression
File sharing
Eucalyptus cloud platform is mainly compatible with:
VMware ESXi APIs
Amazon EC2 and S3 APIs
Microsoft Azure APIs
Google Cloud APIs
Azure Active Directory (AAD) is primarily responsible for:
Application deployment
Identity and access management
Data compression
Amazon EC2’s security groups function as:
Data encryption keys
Virtual firewalls controlling inbound and outbound traffic
Storage allocation tools
SLA management units
Which regulation primarily governs data protection and privacy in the European Union?
HIPAA
GDPR
PCI-DSS
ISO/IEC 27002
