nerdexam
CSA

CCSK · Question #183

ENISA: To mitigate credential compromise or theft, cloud provider can implement:

The correct answer is E. Anomaly detection capabilities. Do you provide anomaly detection (the ability to spot unusual and potentially malicious IP traffic and user or support team behaviour)? For example, analysis of failed and successful logins, unusual time of day, and multiple logins, etc. What provisions exist in the event of…

Cloud Platform and Infrastructure Security

Question

ENISA: To mitigate credential compromise or theft, cloud provider can implement:

Options

  • AHR background checks
  • BHardening of virtual machines according to industry standard guidelines
  • CData-at-rest encryption
  • DPortable applications using open APIs
  • EAnomaly detection capabilities

How the community answered

(37 responses)
  • A
    3% (1)
  • B
    3% (1)
  • C
    11% (4)
  • D
    8% (3)
  • E
    76% (28)

Explanation

Do you provide anomaly detection (the ability to spot unusual and potentially malicious IP traffic and user or support team behaviour)? For example, analysis of failed and successful logins, unusual time of day, and multiple logins, etc. What provisions exist in the event of the theft of a customer’s credentials (detection, revocation, evidence for actions)?

Topics

#credential security#anomaly detection#ENISA#cloud security controls

Community Discussion

No community discussion yet for this question.

Full CCSK Practice