CLOUDSEC-PRO Exam Questions
220 real CLOUDSEC-PRO exam questions with expert-verified answers and explanations. Page 3 of 5.
- Question #101
Which two modules work together to secure sensitive data in cloud workloads? (Choose two)
- Question #102
A benefit of integrating vulnerability management into posture security tools is:
- Question #103
Agentless scanning is less effective for detecting:
- Question #104
Unified compliance management can reduce audit time by:
- Question #105
Identity security supports compliance by:
- Question #106
Which two functions are typically part of a vulnerability management module? (Choose two)
- Question #107
Posture Security Management Modules provide value by:
- Question #108
A key difference between agent-based and agentless scanning is:
- Question #109
Which two benefits are achieved by combining CSPM with unified compliance management? (Choose two)
- Question #110
An IAM security module can prevent lateral movement attacks by:
- Question #111
A vulnerability scan shows a critical flaw in an internet-facing workload. The most effective next step is to:
- Question #112
Which is the main function of Cloud Workload Protection (CWP)?
- Question #113
Which two capabilities are core to CWP solutions? (Choose two)
- Question #114
Cloud Detection and Response (CDR) focuses on:
- Question #115
Which two features are typical of Cloud Detection and Response tools? (Choose two)
- Question #116
A security team uses CWP to enforce allowlist policies on container images. This helps to:
- Question #117
Which runtime security capability helps detect privilege escalation attempts inside workloads?
- Question #118
CDR differs from traditional SIEM in that it:
- Question #119
Which two workload types are typically protected by CWP? (Choose two)
- Question #120
A CDR system triggers an alert for an abnormal spike in outbound traffic from a storage bucket. This is likely an example of:
- Question #121
Which CWP feature prevents malicious processes from spawning inside workloads?
- Question #122
Why is runtime protection important even after workloads pass pre-deployment security scans?
- Question #123
Which two data sources are commonly integrated into CDR? (Choose two)
- Question #124
CWP helps meet compliance requirements by:
- Question #125
What is a primary advantage of integrating CWP and CDR?
- Question #126
Which two CWP functions help mitigate malware risk? (Choose two)
- Question #127
CDR is especially effective against:
- Question #128
In container security, runtime monitoring helps detect:
- Question #129
Why is anomaly-based detection important in CDR?
- Question #130
Which two runtime security features protect workloads from insider threats? (Choose two)
- Question #131
A key limitation of CWP is that:
- Question #132
Web Application and API Security (WAAS) protects against:
- Question #133
Which two capabilities are core to WAAS? (Choose two)
- Question #134
Vulnerability management in runtime security aims to:
- Question #135
Which two factors are used to prioritize vulnerabilities? (Choose two)
- Question #136
Agent management in runtime security involves:
- Question #137
Which two challenges are common in agent deployment? (Choose two)
- Question #138
WAAS can mitigate credential stuffing attacks by:
- Question #139
Why is API security critical in cloud runtime environments?
- Question #140
A vulnerability scan detects outdated open-source libraries in a container image. The next best step is to:
- Question #141
Which two features are essential in a runtime vulnerability management program? (Choose two)
- Question #142
Agentless WAAS deployment is preferred when:
- Question #143
Which two capabilities improve WAAS detection accuracy? (Choose two)
- Question #144
Agent management dashboards typically provide:
- Question #145
What is a disadvantage of over-relying on agent-based WAAS deployment?
- Question #146
Which WAAS feature protects against API abuse?
- Question #147
A vulnerability in a workload has a CVSS 9.8 score and is actively exploited. What should be the response priority?
- Question #148
In runtime environments, agent deployment failures can result from:
- Question #149
Which two functions are enhanced by integrating WAAS with vulnerability management? (Choose two)
- Question #150
Agent lifecycle management includes: