




























































































Study with the several resources on Docsity
Earn points by helping other students or get them with a premium plan
Prepare for your exams
Study with the several resources on Docsity
Earn points to download
Earn points by helping other students or get them with a premium plan
WGU COURSE C838 - MANAGING CLOUD SECURITY
Typology: Exams
1 / 385
This page cannot be seen from the preview
Don't miss anything!





























































































Which phase of the cloud data life cycle allows both read and process functions to be performed? A Create B Archive C Store D Share - correct answers ✅A Which phase of the cloud data security life cycle typically occurs simultaneously with creation? A Share B Store C Use D Destroy - correct answers ✅B Which phase of the cloud data life cycle uses content delivery networks?
A Destroy B Archive C Share D Create - correct answers ✅C Which phase of the cloud data life cycle is associated with crypto-shredding? A Share B Use C Destroy D Store - correct answers ✅C Which cloud data storage architecture allows sensitive data to be replaced with unique identification symbols that retain all the essential information about the data without compromising its security? A Randomization
A Short-term storage B Structured C Unstructured D Long-term storage - correct answers ✅B Which platform as a service (PaaS) storage architecture should be used if an organization wants to store presentations, documents, and audio files? A Relational database B Block C Distributed D Object - correct answers ✅D Which technique scrambles the content of data using a mathematical algorithm while keeping the structural arrangement of the data? A Dynamic masking B Format-preserving encryption
C Proxy-based encryption D Tokenization - correct answers ✅B Which encryption technique connects the instance to the encryption instance that handles all crypto operations? A Database B Proxy C Externally managed D Server-side - correct answers ✅B Which type of control should be used to implement custom controls that safeguard data? A Public and internal sharing B Options for access C Management plane D Application level - correct answers ✅D
A company has recently defined classification levels for its data. During which phase of the cloud data life cycle should this definition occur? A Use B Create C Share D Archive - correct answers ✅B Which jurisdictional data protection includes dealing with the international transfer of data? A Financial modernization B Secure choice authorization (SCA) C Sarbanes-Oxley act (SOX) D Privacy regulation - correct answers ✅D Which jurisdictional data protection controls the ways that financial institutions deal with the private information of individuals?
A Stored communications act (SCA) B Health insurance portability and accountability act (HIPAA) C Gramm-Leach-Bliley act (GLBA) D Sarbanes-Oxley act (SOX) - correct answers ✅C Which jurisdictional data protection safeguards protected health information (PHI)? A Directive 95/46/EC B Safe harbor regime C Personal Data Protection Act of 2000 D Health Insurance Portability and Accountability Act (HIPAA) - correct answers ✅D How is the compliance of the cloud service provider's legal and regulatory requirements verified when securing personally identifiable information (PII) data in the cloud? A Contractual agreements
D Analyst - correct answers ✅A Which data retention solution should be applied to a file in order to reduce the data footprint by deleting fixed content and duplicate data? A Backup B Caching C Archiving D Saving - correct answers ✅C Which data retention method is stored with a minimal amount of metadata storage with the content? A File system B Redundant array C Object-based D Block-based - correct answers ✅D
What is a key capability of security information and event management? A Intrusion prevention capabilities B Automatic remediation of issues C Centralized collection of log data D Secure remote access - correct answers ✅C Which data source provides auditability and traceability for event investigation as well as documentation? A Storage files B Packet capture C Network interference D Database tables - correct answers ✅B Which data source provides auditability and traceability for event investigation as well as documentation?
B Concept C Access D Authentication - correct answers ✅D Which cloud computing tool is used to discover internal use of cloud services using various mechanisms such as network monitoring? A Data loss prevention (DLP) B Content delivery network (CDN) C Cloud access security broker (CASB) D Web application firewall (WAF) - correct answers ✅C Which cloud computing technology unlocks business value through digital and physical access to maps? A Multitenancy B Cloud application C Application programming interface
D On-demand self-service - correct answers ✅C Which cloud computing tool may help detect data migrations to cloud services? A Uniform resource locator (URL) filtering B Cloud security gateways C Cloud data transfer D Data loss prevention - correct answers ✅D What is a key component of the infrastructure as a service (IaaS) cloud service model? A Allows choice and reduces lock-in B Supports multiple languages and frameworks C Ease of use and limited administration D High reliability and resilience - correct answers ✅D What is a key capability of infrastructure as a service (IaaS)?
B Platform C Application D Data - correct answers ✅A In which situation could cloud clients find it impossible to recover or access their own data if their cloud provider goes bankrupt? A Vendor lock-in B Multitenant C Multicloud D Vendor lock-out - correct answers ✅D Which cloud deployment model is operated for a single organization? A Consortium B Hybrid C Public
D Private - correct answers ✅D Which cloud model provides data location assurance? A Hybrid B Private C Community D Public - correct answers ✅B Which cloud model allows the consumer to have sole responsibility for management and governance? A Hybrid B Community C Private D Public - correct answers ✅C Which technology allows an organization to control access to sensitive documents stored in the cloud?
C They restrict the amount of instances in a cluster. D They create patches for a running workload. - correct answers ✅A Which document addresses CSP issues such as guaranteed uptime, liability, penalties, and dispute mediation process? A General data protection regulation (GDPR) B Service organization control 3 (SOC 3) C Service level agreement (SLA) D Common criteria assurance framework (CC) - correct answers ✅C Which design principle of secure cloud computing ensures that the business can resume essential operations in the event of an availability-affecting incident? A Disaster recovery B Resource pooling C Access control D Session management - correct answers ✅A
Which design principle of secure cloud computing ensures that users can utilize data and applications from around the globe? A Portability B Scalability C On-demand self-service D Broad network access - correct answers ✅D Which design principle of secure cloud computing involves deploying cloud service provider resources to maximize availability in the event of a failure? A Elasticity B Resiliency C Scalability D Clustering - correct answers ✅B Which item should be part of the legal framework analysis if a company wishes to store prescription drug records in a SaaS solution?