Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Free Practice Questions for the WGU Courses and Certificates Managing-Cloud-Security Exam (2026 Updated)

At Marks4sure, we are dedicated to providing IT professionals with the most accurate and reliable preparation materials for the WGU Managing-Cloud-Security exam. To support your certification journey, we have made a selection of our premium 2026 Courses and Certificates practice questions and answers available completely free. You can take this practice test as many times as you need. Every question includes a detailed, expertly verified explanation to ensure you fully grasp the core security concepts before test day.

Questions 4

Which jurisdictional data protection was enacted in the United States to avoid forced disclosure from ISPs?

Options:

A.

APP8

B.

Stored Communications Act (SCA)

C.

General Data Protection Regulation (GDPR)

D.

APP11.1

Buy Now
Questions 5

Under which jurisdiction do General Data Protection Regulation (GDPR) guidelines apply?

Options:

A.

China

B.

European Union

C.

Australia

D.

United States of America

Buy Now
Questions 6

Which action should be taken to preserve forensic evidence for collection?

Options:

A.

Implementing serverless architectures

B.

Enabling threat modeling

C.

Pausing the virtual machine

D.

Enforcing mutable servers

Buy Now
Questions 7

Which phase of the cloud data life cycle involves the process of crypto-shredding?

Options:

A.

Destroy

B.

Create

C.

Archive

D.

Store

Buy Now
Questions 8

Which phase of software design covers the combination of individual components of developed code and the determination of proper interoperability?

Options:

A.

Testing

B.

Training

C.

Planning

D.

Coding

Buy Now
Questions 9

Which phase in secure application design and development includes threat modeling?

Options:

A.

Define

B.

Design

C.

Training

D.

Develop

Buy Now
Questions 10

How does a cloud-based distributed denial-of-service (DDoS) protection strategy help in the event of an attack?

Options:

A.

Using round-robin load balancing

B.

Rerouting traffic to the mitigation services

C.

Having multiple endpoints

D.

Scaling the receiving application

Buy Now
Questions 11

Which cloud model is owned and operated by a vendor and then sold, leased, or rented to someone else?

Options:

A.

Private

B.

Hybrid

C.

Community

D.

Public

Buy Now
Questions 12

Which key management option typically needs to be on-premises and delivers the keys to the cloud over a dedicated connection?

Options:

A.

Hardware security appliance

B.

Hybrid

C.

Virtual appliance

D.

Cloud provider service

Buy Now
Questions 13

Which strategy will reduce the impact of risk in the business continuity and disaster recovery planning process?

Options:

A.

Insurance

B.

Avoidance

C.

Mitigation

D.

Acceptance

Buy Now
Questions 14

Which factor is a primary consideration when analyzing the legal and privacy implications of using cloud technologies?

Options:

A.

Jurisdiction of the cloud provider and users

B.

Level of encryption that the cloud solution provides

C.

Configuration details specified in the contract

D.

Penalties specified in the service level agreement

Buy Now
Questions 15

Which device identifies and stops attack-based commands from executing on a structured query language (SQL) server?

Options:

A.

Host-based firewall

B.

Database activity monitor

C.

Hardware security module

D.

Cloud access and security broker

Buy Now
Questions 16

An organization is considering using vendor-specific application programming interfaces (APIs) and internal tools to set up a new service. However, the engineers are against this plan and are advocating for a new policy to prevent issues that could arise. Which common concern in cloud applications are the engineers concerned about?

Options:

A.

Reliability

B.

Scalability

C.

Portability

D.

Availability

Buy Now
Questions 17

A customer requests that a cloud provider physically destroys any drives storing their personal data. What must the provider do with the drives?

Options:

A.

It should destroy them only if the contract includes hardware disposal insurance.

B.

It should use cryptographic erasure to securely remove any personal data from the drives.

C.

It should destroy them only if dedicated hardware disposal is specified in the contract.

D.

It should use degaussing tools to securely remove any personal data from the drives.

Buy Now
Questions 18

Which design pillar encompasses the ability to support development and run workloads effectively, gain insights into operations, and continuously improve supporting processes to deliver business value?

Options:

A.

Performance efficiency

B.

Operational excellence

C.

Reliability

D.

Sustainability

Buy Now
Questions 19

Which cloud risk is associated with the supply chain due to dependency on legacy internal servers for application delivery to end users?

Options:

A.

Natural disasters

B.

Outages

C.

Fast run time

D.

Homomorphic encryption

Buy Now
Questions 20

An organization is evaluating which cloud computing service model it should implement. It is considering either platform as a service (PaaS) or software as a service (SaaS). Which risk associated with SaaS can the organization avoid by choosing PaaS?

Options:

A.

Vendor lock-out

B.

Vendor lock-in

C.

Personnel threat

D.

Natural disaster

Buy Now
Questions 21

What is the definition of transportable as it relates to cloud contract design requirements?

Options:

A.

Available to be accessed by mobile devices

B.

Able to be moved to another vendor

C.

Available in a proprietary format

D.

Able to be archived quickly

Buy Now
Questions 22

Which regulation defines requirements for the electronic transfer of healthcare data to a cloud service provider?

Options:

A.

Stark Law

B.

Healthcare Quality Improvement Law

C.

Health Insurance Portability and Accountability Act

D.

Gramm-Leach-Bliley Act

Buy Now
Questions 23

An organization designing a data center wants the ability to quickly create and shut down virtual systems based on demand. Which concept describes this capability?

Options:

A.

Resource scheduling

B.

High availability

C.

Ephemeral computing

D.

Maintenance mode

Buy Now
Questions 24

Which security strategy is associated with data rights management solutions?

Options:

A.

Persistent protection

B.

Multilevel aggregation

C.

Enhanced detail

D.

Unexpired digital content

Buy Now
Questions 25

Which business continuity and disaster recovery consideration should be part of a cloud application architecture?

Options:

A.

Architecting for failure

B.

Health status pages

C.

Compliance of applications

D.

Application message queues

Buy Now
Questions 26

Which data retention policy addresses how long data must be retained to meet regulatory requirements?

Options:

A.

Formats

B.

Classification

C.

Retrieval

D.

Periods

Buy Now
Questions 27

Which cloud computing characteristic allows consumers to expand or contract required resources automatically?

Options:

A.

Measured service

B.

Resource pooling

C.

On-demand self-service

D.

Rapid elasticity

Buy Now
Questions 28

A security analyst is tasked with compiling a report of all people who used a system between two dates. The thorough report must include information about how long and how often the system was used. Which information should the analyst ensure is in the report?

Options:

A.

Informational logs and message of the day

B.

Environmental errors and 802.1x logs

C.

User identifications and access timestamps

D.

User commands and error timestamps

Buy Now
Questions 29

Which security risk is co-owned by the enterprise team and the cloud provider in the software as a service (SaaS) model?

Options:

A.

Application

B.

Data

C.

Physical

D.

Platform

Buy Now
Questions 30

Which setting ensures that an attacker cannot read the information stored temporarily for use by another virtual machine (VM)?

Options:

A.

Encrypted network protocols

B.

Encrypted file system

C.

Dedicated processor

D.

Dedicated memory

Buy Now
Questions 31

An organization is reviewing a contract from a cloud service provider and wants to ensure that all aspects of the contract are adhered to by the cloud service provider. Which control will allow the organization to verify that the cloud provider is meeting its obligations?

Options:

A.

Continuous monitoring

B.

Confidential computing

C.

Regulatory oversight

D.

Incident management

Buy Now
Questions 32

Which tool provides a dedicated environment to contain and analyze malware?

Options:

A.

Encryption

B.

Gateway

C.

Sandbox

D.

Controller

Buy Now
Questions 33

Which tier from Uptime Institute ' s Data Center Site Infrastructure Tier Standards is considered to be the most secure, reliable, and redundant in design and operational elements?

Options:

A.

Tier IV

B.

Tier I

C.

Tier II

D.

Tier III

Buy Now
Questions 34

Which data retention method is used for business continuity and disaster recovery (BC/DR) backups?

Options:

A.

Archiving and retrieval procedures

B.

Data classification

C.

Local agent checks

D.

Monitoring and enforcement

Buy Now
Questions 35

A user creates new financial documents that will be stored in the cloud. Which action should the user take before uploading the documents to protect them against threats such as packet capture and on-path attacks?

Options:

A.

Hashing

B.

Encryption

C.

Change tracking

D.

Metadata labeling

Buy Now
Questions 36

Which type of data sanitization should be used to destroy data on a USB thumb drive while keeping the drive intact?

Options:

A.

Key revocation

B.

Physical destruction

C.

Overwriting

D.

Degaussing

Buy Now
Questions 37

Which risk relates to the removal of a person’s information within the public cloud by legal authorities?

Options:

A.

Remote wiping

B.

Vendor lock-in

C.

Data masking

D.

Data seizure

Buy Now
Questions 38

Which description characterizes the application programming interface (API) format known as Simple Object Access Protocol (SOAP)?

Options:

A.

Consists of guidelines and best practices for creating scalable web services

B.

Provides a framework for exchanging structured information using web services

C.

Delivers good performance and scalability

D.

Supports different data formats such as JSON, XML, and YAML

Buy Now
Questions 39

A governmental data storage organization plans to relocate its primary North American data center to a new property with larger acreage. Which defense should the organization deploy at this location to prevent vehicles from causing harm to the data center?

Options:

A.

Locks

B.

Cameras

C.

Bollards

D.

Fences

Buy Now
Questions 40

A breach caused by lack of security management resulted in a civil lawsuit. The organization must communicate with the entity that is responsible for performing adequate oversight. Who should be contacted?

Options:

A.

Cloud customer

B.

IT department

C.

High-level government agencies

D.

Board of director members

Buy Now
Questions 41

Which risk may be faced by users when using software resources in the platform as a service (PaaS) cloud model?

Options:

A.

Guest escape

B.

Information bleed

C.

Software interoperability

D.

Web application security

Buy Now
Questions 42

An organization consists of many divisions. Its leadership team has gathered the managers and key team members in each division to help create a disaster recovery plan. It studies the type of natural events that commonly occur and the risk involved for each location in which the organization has a data center. What is the leadership team doing in this scenario?

Options:

A.

Performing an asset inventory

B.

Running a disaster declaration process

C.

Identifying the actions

D.

Defining the disaster criteria

Buy Now
Questions 43

Which cloud model allows an on-premises data center to use cloud bursting?

Options:

A.

Public

B.

Hybrid

C.

Community

D.

Private

Buy Now
Questions 44

Which design principle of secure cloud computing ensures that users have access to a large number of resources that grow based on user demand?

Options:

A.

Resource pooling

B.

Collaboration

C.

Virtualization

D.

Rapid elasticity

Buy Now
Questions 45

A network administrator is concerned about the loss of physical control when moving data to the cloud. Which countermeasure should be implemented to avoid this threat?

Options:

A.

Multi-layer control

B.

Tertiary control

C.

Ancillary control

D.

Compensating control

Buy Now
Questions 46

Which group should be notified for approval when a planned modification to an environment is scheduled?

Options:

A.

Event management team

B.

Problem management team

C.

Change management board

D.

Executive management board

Buy Now
Questions 47

An organization’s help desk receives a call from a person claiming to be an employee wanting to verify their home address on file. The caller answers the basic authentication questions, so the help desk employee provides them the sensitive information. The organization later discovers that this call was fraudulent. Which type of threat does this represent?

Options:

A.

Man-in-the-middle attacks

B.

Social engineering

C.

Escalation of privilege

D.

Internal threats

Buy Now
Questions 48

Which activity is within the scope of the cloud provider’s role in the chain of custody?

Options:

A.

Setting data backup and recovery policies

B.

Collecting and preserving digital evidence

C.

Initiating and executing incident response

D.

Classifying and analyzing data

Buy Now
Questions 49

Which countermeasure should be taken during the preparation phase of the incident response lifecycle?

Options:

A.

Take the system offline

B.

Perform risk assessments

C.

Estimate the scope of the incident

D.

Build a timeline of attack

Buy Now
Questions 50

Which process involves identification and valuation of assets in order to determine their potential effect on cloud operations?

Options:

A.

Risk transfer

B.

Vulnerability assessment

C.

Business impact analysis

D.

Out-of-band validation

Buy Now
Questions 51

Which type of regulation governs credit card transactions as a part of cloud operations?

Options:

A.

GLBA

B.

PCI DSS

C.

SOX

D.

HIPAA

Buy Now
Questions 52

Which phase of the software development life cycle includes creating user stories?

Options:

A.

Developing

B.

Designing

C.

Defining

D.

Planning

Buy Now
Questions 53

Which of the following is an iterative software development methodology that focuses on achieving customer satisfaction by delivering the software early in the process and welcoming changing requirements from the customer, even late in the process?

Options:

A.

Agile

B.

Spiral

C.

Waterfall

D.

Lean

Buy Now
Questions 54

Which service model requires the most consumer responsibility for security issues?

Options:

A.

Platform as a Service (PaaS)

B.

Software as a Service (SaaS)

C.

Database as a Service (DBaaS)

D.

Infrastructure as a Service (IaaS)

Buy Now
Questions 55

Which cloud computing service model allows customers to run their own application code without configuring the server environment?

Options:

A.

Data science as a service (DSaaS)

B.

Infrastructure as a service (IaaS)

C.

Software as a service (SaaS)

D.

Platform as a service (PaaS)

Buy Now
Questions 56

Which management process involves multiple key holders, each with access to a portion of the information?

Options:

A.

Recovery

B.

Revocation

C.

Distribution

D.

Escrow

Buy Now
Questions 57

Which level of compliance is required by a cloud service provider to protect customer data at banks and insurance companies?

Options:

A.

IDEA

B.

DMCA

C.

FERPA

D.

GLBA

Buy Now
Questions 58

A cloud consumer is scheduling a vulnerability assessment of a cloud service procured through a cloud broker. Who should the cloud consumer notify before beginning the assessment?

Options:

A.

The cloud broker

B.

The cloud consumer’s legal department

C.

The cloud consumer’s customers

D.

The cloud service provider

Buy Now
Questions 59

Which process is implemented during the hardening of an operating system (OS) and its workloads?

Options:

A.

Change management

B.

Incident management

C.

Patch management

D.

Security management

Buy Now
Questions 60

Which security testing method requires compliance with the cloud service provider’s terms of service?

Options:

A.

Vulnerability assessment

B.

Continuous delivery pipeline

C.

Static analysis

D.

Code review

Buy Now
Questions 61

Which security control could be implemented as part of a layered physical defense at a cloud hosting site?

Options:

A.

Access control enforcement

B.

Background checks

C.

Video surveillance capability

D.

Multifactor authentication

Buy Now
Exam Name: WGU Managing Cloud Security (JY02, GZO1)
Last Update: Sep 7, 2026
Questions: 204

PDF + Testing Engine

$64.99   $185.69

Testing Engine

$49.99   $142.83

PDF (Q&A)

$54.99   $157.11