CCCS-203B · Question #145
A multi-cloud security engineer is responsible for managing cloud security across AWS, Azure, and Google Cloud. The engineer wants to ensure that only specific team members can onboard new cloud…
The correct answer is C. Falcon Cloud Security Onboarding. Option A: While Falcon Administrators have full access to CrowdStrike Falcon, assigning this role just for cloud onboarding is not a best practice. Overuse of administrative privileges increases Option B: The Falcon Threat Hunter role allows security professionals to conduct…
Question
A multi-cloud security engineer is responsible for managing cloud security across AWS, Azure, and Google Cloud. The engineer wants to ensure that only specific team members can onboard new cloud accounts into CrowdStrike Falcon Cloud Security. Which Falcon role must be assigned to grant users permission to onboard cloud accounts?
Options
- AFalcon Administrator
- BFalcon Threat Hunter
- CFalcon Cloud Security Onboarding
- DFalcon Viewer
How the community answered
(34 responses)- A9% (3)
- B3% (1)
- C85% (29)
- D3% (1)
Explanation
Option A: While Falcon Administrators have full access to CrowdStrike Falcon, assigning this role just for cloud onboarding is not a best practice. Overuse of administrative privileges increases Option B: The Falcon Threat Hunter role allows security professionals to conduct threat hunting and forensic analysis but does not include permissions for cloud account registration. Option C: The Falcon Cloud Security Onboarding role is specifically designed for registering and managing cloud accounts within Falcon Cloud Security. This role ensures that users can onboard AWS, Azure, and GCP accounts while maintaining security and compliance without having unnecessary administrative privileges. Option D: The Falcon Viewer role is read-only, meaning users with this role cannot onboard new cloud accounts or make configuration changes. It is designed for security monitoring, not for account registration.
Topics
Community Discussion
No community discussion yet for this question.