nerdexam
CompTIA

CLO-002 · Question #605

Which of the following procedures would most likely require formal authorization from the CSP before execution inside the cloud environment?

The correct answer is D. Penetration testing. Penetration testing involves simulating attacks on a cloud environment to identify security vulnerabilities. Due to the potential impact on the cloud infrastructure and other tenants, it typically requires formal authorization from the Cloud Service Provider (CSP) before…

Cloud Security and Compliance

Question

Which of the following procedures would most likely require formal authorization from the CSP before execution inside the cloud environment?

Options

  • AData sanitization
  • BVulnerability scanning
  • CApplication scanning
  • DPenetration testing

How the community answered

(59 responses)
  • A
    3% (2)
  • B
    15% (9)
  • C
    7% (4)
  • D
    75% (44)

Explanation

Penetration testing involves simulating attacks on a cloud environment to identify security vulnerabilities. Due to the potential impact on the cloud infrastructure and other tenants, it typically requires formal authorization from the Cloud Service Provider (CSP) before execution. The CSP needs to ensure that the testing does not disrupt services, compromise security, or violate terms of service agreements.

Topics

#penetration testing#CSP authorization#cloud security testing#shared responsibility

Community Discussion

No community discussion yet for this question.

Full CLO-002 Practice