nerdexam
(ISC)2(ISC)2

CISSP · Question #1040

CISSP Question #1040: Real Exam Question with Answer & Explanation

The correct answer is D: Virtual private cloud (VPC). A virtual private cloud (VPC) is an approach that will secure logical access to assets in a multi- tenant cloud environment. A VPC is a segment of a public cloud that is isolated and dedicated to a specific customer or tenant. A VPC enables the customer to have more control and s

Submitted by yuriko_h· Mar 5, 2026Security Architecture and Engineering

Question

In a multi-tenant cloud environment, what approach will secure logical access to assets?

Options

  • AHybrid cloud
  • BTransparency/Auditability of administrative access
  • CControlled configuration management (CM)
  • DVirtual private cloud (VPC)

Explanation

A virtual private cloud (VPC) is an approach that will secure logical access to assets in a multi- tenant cloud environment. A VPC is a segment of a public cloud that is isolated and dedicated to a specific customer or tenant. A VPC enables the customer to have more control and security over their cloud resources, such as compute, storage, or network. A VPC can also be connected to the customer's on- premises network or other VPCs through a secure VPN tunnel or a dedicated connection. A VPC can prevent unauthorized or malicious access to the customer's assets from other tenants or external parties. A hybrid cloud is a combination of public and private clouds that are integrated and interoperable. A hybrid cloud does not necessarily secure logical access to assets in a multi-tenant cloud environment, as it depends on the security measures and controls implemented by the cloud providers and the customer. Transparency/auditability of administrative access is a principle or a practice that requires the cloud provider to disclose and document the access and actions of their administrators on the customer's cloud resources. Transparency/auditability of administrative access does not secure logical access to assets in a multi-tenant cloud environment, as it does not prevent or restrict the access, but rather monitors and reports it. Controlled configuration management (CM) is a process or a function that ensures the consistency and integrity of the cloud resources and their configurations. Controlled CM does not secure logical access to assets in a multi-tenant cloud environment, as it does not address the access control or the isolation of the cloud resources.

Topics

#cloud security#multi-tenancy#virtual private cloud#logical isolation

Community Discussion

No community discussion yet for this question.

Full CISSP PracticeBrowse All CISSP Questions