Pre-Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

312-40 EC-Council Certified Cloud Security Engineer (CCSE) is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

312-40 Practice Questions

EC-Council Certified Cloud Security Engineer (CCSE)

Last Update 1 day ago
Total Questions : 147

Dive into our fully updated and stable 312-40 practice test platform, featuring all the latest Certified Cloud Security Engineer (CCSE) exam questions added this week. Our preparation tool is more than just a ECCouncil study aid; it's a strategic advantage.

Our free Certified Cloud Security Engineer (CCSE) practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about 312-40. Use this test to pinpoint which areas you need to focus your study on.

312-40 PDF

312-40 PDF (Printable)
$43.75
$124.99

312-40 Testing Engine

312-40 PDF (Printable)
$50.75
$144.99

312-40 PDF + Testing Engine

312-40 PDF (Printable)
$63.7
$181.99
Question # 61

Cosmic IT Services wants to migrate to cloud computing. Before migrating to the cloud, the organization must set business goals for cloud computing as per the guidelines of a standard IT governance body. Which standard IT governance body can help the organization to set business goals and objectives for cloud computing by offering the IT governance named COBIT (Control Objective for Information and Related Technology)?

Options:

A.  

International Standards Organization (ISO)

B.  

Cloud Security Alliance (CSA)

C.  

Information System Audit and Control Association (ISACA)

D.  

Committee of Sponsoring Organizations (COSO)

Discussion 0
Question # 62

Global SciTech Pvt. Ltd. is an IT company that develops healthcare-related software. Using an incident detection system (IDS) and antivirus software, the incident response team of the organization has observed that attackers are targeting the organizational network to gain access to the resources in the on-premises environment. Therefore, their team of cloud security engineers met with a cloud service provider to discuss the various security provisions offered by the cloud service provider. While discussing the security of the organization's virtual machine in the cloud environment, the cloud service provider stated that the Network Security Groups (NSGs) will secure the VM by allowing or denying network traffic to VM instances in a virtual network based on inbound and outbound security rules. Which of the following cloud service provider filters the VM network traffic in a virtual network using NSGs?

Options:

A.  

IBM

B.  

AWS

C.  

Azure

D.  

Google

Discussion 0
Question # 63

An Azure subscription owner, Arial Solutions, gets notified by Microsoft (by default} when a high-severity alert (email notification) is triggered. The cloud security engineer would like to send these security alerts to a specific Individual or anyone with particular Azure roles for a subscription, and modify the severity levels for which alerts are sent. How con the cloud security engineer configure these alerts?

Options:

A.  

By selling Azure Front Door

B.  

By exporting ASC alerts using the Export Feature

C.  

By using ASC Data Connector to stream alerts to Azure Sentinel

D.  

By setting ASC security contact

Discussion 0
Question # 64

InternSoft Solution Pvt. Ltd. is an IT company located in Boston, Massachusetts. The IT and InfoSec teams of the organization uses CASP to customize access rules and automate compliance policies. Using CASP solutions, they could access the account activities in the cloud, which makes it easy for them to achieve compliance, data security, and threat protection. What is CASP?

Options:

A.  

It is a CASB that uses APIs

B.  

It is a WAF that uses proxies

C.  

It is a CASB that uses proxies

D.  

It is a RASP that uses APIs

Discussion 0
Question # 65

YourTrustedCloud is a cloud service provider that provides cloud-based services to several multinational companies. The organization adheres to various frameworks and standards. YourTrustedCloud stores and processes credit card and payment-related data in the cloud environment and ensures the security of transactions and the credit card processing system. Based on the given information, which of the following standards does YourTrustedCloud adhere to?

Options:

A.  

CLOUD

B.  

FERPA

C.  

GLBA

D.  

PCI DSS

Discussion 0
Question # 66

Chris Noth has recently joined CloudAppSec Private Ltd. as a cloud security engineer. Owing to several instances of malicious activities performed by former employees on his organization's applications and data that reside in an on-premises environment, in 2010, his organization adopted cloud computing and migrated all applications and data to the cloud. Chris would like to manage user identities in cloud-based services and applications. Moreover, he wants to reduce the risk caused by the accounts of former users (employees) by ensuring that the users who leave the system can no longer log in to the system. Therefore, he has enforced an IAM standard that can automate the provisioning and de-provisioning of users when they enter and leave the system. Which of the following IAM standards is implemented by Chris Noth?

Options:

A.  

SCIM

B.  

XACML

C.  

OpenID

D.  

OAuth

Discussion 0
Question # 67

An IT organization named WITEC Solutions has adopted cloud computing. The organization must manage risks to keep its business data and services secure and running by gaining knowledge about the approaches suitable for specific risks. Which risk management approach can compensate the organization if it loses sensitive data owing to the risk of an activity?

Options:

A.  

Risk mitigation

B.  

Risk acceptance

C.  

Risk avoidance

D.  

Risk transference

Discussion 0
Question # 68

Shell Solutions Pvt. Ltd. is an IT company that develops software products and services for BPO companies. The organization became a victim of a cybersecurity attack. Therefore, it migrated its applications and workloads from on-premises to a cloud environment. Immediately, the organization established an incident response team to prevent such incidents in the future. Using intrusion detection system and antimalware software, the incident response team detected a security incident and mitigated the attack. The team recovered the resources from the incident and identified various vulnerabilities and flaws in their cloud environment. Which step of the incident response lifecycle includes the lessons learned from previous attacks and analyzes and

documents the incident to understand what should be improved?

Options:

A.  

Analysis

B.  

Post-mortem

C.  

Coordination and Information Sharing

D.  

Preparation

Discussion 0
Question # 69

Jayson Smith works as a cloud security engineer in CloudWorld SecCo Pvt. Ltd. This is a third-party vendor that provides connectivity and transport services between cloud service providers and cloud consumers. Select the actor that describes CloudWorld SecCo Pvt. Ltd. based on the NIST cloud deployment reference architecture?

Options:

A.  

Cloud Broker

B.  

Cloud Auditor

C.  

Cloud Carrier

D.  

Cloud Provider

Discussion 0
Question # 70

Shannon Elizabeth works as a cloud security engineer in VicPro Soft Pvt. Ltd. Microsoft Azure provides all cloud-based services to her organization. Shannon created a resource group (ProdRes), and then created a virtual machine (myprodvm) in the resource group. On myprodvm virtual machine, she enabled JIT from the Azure Security Center dashboard. What will happen when Shannon enables JIT VM access?

Options:

A.  

It locks down the inbound traffic from myprodvm by creating a rule in the network security group

B.  

It locks down the inbound traffic to myprodvm by creating a rule in the Azure firewall

C.  

It locks down the outbound traffic from myprodvm by creating a rule in the network security group

D.  

It locks down the outbound traffic to myprodvm by creating a rule in the Azure firewall

Discussion 0
Get 312-40 dumps and pass your exam in 24 hours!

Free Exams Sample Questions