CCCS-203B · Question #68
CCCS-203B Question #68: Real Exam Question with Answer & Explanation
The correct answer is C. Exposing sensitive data through misconfigured AWS S3 bucket permissions. Option A: This is incorrect because allowing outbound traffic might be a security consideration but is not inherently a misconfiguration. It depends on the context and the specific security policies in Option B: This is incorrect because, while enabling MFA is a critical security
Question
Options
- AAllowing outbound network traffic from a containerized application
- BFailing to enable multi-factor authentication for all user accounts
- CExposing sensitive data through misconfigured AWS S3 bucket permissions
- DRunning an outdated operating system on a virtual machine
Explanation
Option A: This is incorrect because allowing outbound traffic might be a security consideration but is not inherently a misconfiguration. It depends on the context and the specific security policies in Option B: This is incorrect because, while enabling MFA is a critical security practice, it pertains to identity and access management (IAM) policies rather than a cloud service misconfiguration. Option C: This is correct because a misconfigured AWS S3 bucket is a classic example of a cloud service misconfiguration. Falcon Cloud Security identifies and alerts on such misconfigurations to prevent potential data breaches and compliance violations. Option D: This is incorrect because this is an example of poor patch management or system maintenance, not a cloud service misconfiguration. Falcon Spotlight might identify such vulnerabilities, but they are not classified under "cloud service misconfiguration."
Community Discussion
No community discussion yet for this question.