CompTIA Cloud Essentials+ (CLO-002) practice questions

202 free questions with answers and explanations.

Practice test
  1. 101.A cloud provider offers a service level agreement (SLA) for a data storage service with 99.999% (five nines) availability. Assuming a standard year, what is the maximum acceptable amount of downtime, to the nearest second, for this service annually?Cloud Concepts
  2. 102.A cloud provider offers a service level agreement (SLA) for a compute instance with 99.95% availability. How much total downtime, in minutes, is allowed per year under this SLA?Cloud Concepts
  3. 103.A cloud administrator needs to ensure that specific resources, such as databases and internal APIs, are never exposed directly to the public internet, even if accidentally misconfigured. They should only be accessible from within the private network of the Virtual Private Cloud (VPC). Which networking component is crucial for enforcing this isolation?Management and Technical Operations
  4. 104.A hospital configures its cloud-based billing application so that billing staff can view only the patient's name, insurance ID, and charges, but cannot view clinical notes or diagnosis details unrelated to billing. This configuration is designed to comply with which HIPAA Privacy Rule requirement?Governance, Risk, Compliance and Security
  5. 105.After detecting a ransomware infection on a cloud-hosted virtual machine, the organization's automated incident response system isolates the infected VM and restores the affected data from the most recent clean backup. Which type of security control does this action represent?Governance, Risk, Compliance and Security
  6. 106.An EU citizen contacts an online retailer and formally requests that all personal data the company holds about them be permanently deleted from its cloud databases. Under GDPR, this request invokes which data subject right?Governance, Risk, Compliance and Security
  7. 107.A company is using a cloud provider for its web application. The provider's SLA states that they are responsible for the security of the underlying cloud infrastructure (physical facilities, network, compute, storage). The company, however, is responsible for the security of the application code, customer data, and network configurations within the virtual environment. This division of responsibility is characteristic of which cloud concept?Cloud Concepts
  8. 108.A company is migrating its legacy on-premises application to a public cloud. The application requires dedicated, high-performance storage that can be directly attached to a virtual machine and offers very low latency for database operations. Which type of cloud storage would best meet these requirements?Cloud Concepts
  9. 109.A cloud customer is deploying a mission-critical application that requires uninterrupted service even in the event of an entire cloud region failure. The application must remain fully operational without any data loss. Which disaster recovery strategy should the architect recommend?Cloud Concepts
  10. 110.A cloud architect is designing a highly available application for a financial institution. The requirement states that the application must remain operational even if an entire data center becomes unavailable. Which cloud deployment strategy best addresses this requirement?Management and Technical Operations
  11. 111.A development team is adopting a continuous integration and continuous delivery (CI/CD) pipeline. They want to ensure that every code change is automatically built, tested, and prepared for deployment to a staging environment. Which of the following best describes the primary goal of the 'Continuous Integration' phase in this pipeline?Management and Technical Operations
  12. 112.A security operations team configures a SIEM platform to automatically generate alerts whenever unusual login patterns are observed on cloud administrator accounts, allowing analysts to investigate potential compromises shortly after they occur. Which category of security control does this represent?Governance, Risk, Compliance and Security
  13. 113.A consulting firm is advising a client on cloud migration. The client has a complex, monolithic application that is critical to their business and has a significant technical debt. They are considering a 'lift-and-shift' approach to the cloud, but the consulting firm suggests a more transformative approach to reduce long-term operational costs and improve agility. Which concept represents the difference between merely migrating and fundamentally improving the application for the cloud?Business Principles of Cloud Environments
  14. 114.A cloud administrator is configuring a new virtual machine (VM) in a public cloud environment. To ensure that the VM automatically receives security updates, performance patches, and configuration management without manual intervention, which of the following services should be integrated during provisioning?Management and Technical Operations
  15. 115.A company is evaluating various cloud providers for its new application. One provider offers a licensing model where the cost is based on the actual CPU-hours, GB of storage, and network egress used each month. What type of licensing model is this provider offering?Business Principles of Cloud Environments
  16. 116.A large enterprise is considering migrating some of its non-critical development and testing environments to the cloud. They want to leverage the benefits of cloud computing while keeping their core production systems on-premises due to strict compliance and data sovereignty concerns. Which cloud deployment model best describes this strategy?Cloud Concepts
  17. 117.A company is conducting a feasibility study for migrating its critical analytical workloads to a public cloud. The project team has identified that the existing on-premises data processing tools are not compatible with the cloud provider's managed services, and significant re-engineering would be required. This particular finding primarily impacts which aspect of the cloud feasibility study?Business Principles of Cloud Environments
  18. 118.A software development company uses a public cloud provider for its development and testing environments. Developers frequently provision and de-provision virtual machines and other resources. To ensure cost control and security, the company wants to automatically enforce that all resources are tagged with project, owner, and cost center information, and that non-compliant resources are automatically terminated. Which cloud governance mechanism is best suited for this requirement?Governance, Risk, Compliance and Security
  19. 119.A cloud service provider (CSP) offers a storage service with 99.999999999% (eleven nines) durability and 99.99% availability. A customer stores 100 TB of data in this service. If a single object is 1 MB, how many objects, on average, would the customer expect to lose over a year due to durability failures?Management and Technical Operations
  20. 120.A bank requires customers to log in to its mobile banking app using their password and then enter a one-time numeric code generated by an authenticator app on their smartphone. Which authentication factor category does the one-time code represent?Governance, Risk, Compliance and Security
  21. 121.A large enterprise is planning to migrate its entire on-premises data center to a public cloud. They have identified several legacy applications that are critical but tightly coupled with the existing infrastructure. The enterprise wants to minimize code changes and leverage existing licenses where possible, while still benefiting from cloud scalability. Which migration approach is most suitable for these applications?Business Principles of Cloud Environments
  22. 122.A cloud provider offers a service level agreement (SLA) promising 99.99% availability for a critical application. How many minutes of downtime is permissible per month under this SLA?Cloud Concepts
  23. 123.A company is using a public cloud provider and has deployed several virtual machines (VMs) for different departments: 'Marketing', 'Sales', and 'Engineering'. Each department has its own budget and needs to track its cloud spending independently. Which cloud management feature is essential for accurately allocating costs to these respective departments?Management and Technical Operations
  24. 124.A company is migrating its legacy application to a cloud environment. The application requires a file system that can be shared and accessed concurrently by multiple virtual machines, similar to a traditional network-attached storage (NAS) device. Which cloud storage type would best meet this requirement?Cloud Concepts
  25. 125.A cloud operations team is investigating an application that intermittently experiences high latency and errors during peak load. The application utilizes several microservices running in containers. They suspect that communication issues between these services are contributing to the problem. Which tool or concept would provide the MOST granular visibility into inter-service communication and help diagnose the root cause?Management and Technical Operations
  26. 126.A logistics company determines that migrating its order-tracking application to the cloud carries a moderate risk of data loss during transfer. To address this, the company schedules the migration during low-traffic hours, performs incremental backups throughout the process, and validates data integrity checksums after each transfer batch. Which risk management strategy is the company applying?Governance, Risk, Compliance and Security
  27. 127.A software development company is migrating its legacy monolithic application to a cloud environment. The team decides to break down the application into smaller, independent microservices, leveraging serverless functions and managed database services. Which cloud migration approach is being utilized?Business Principles of Cloud Environments
  28. 128.A cloud management platform is being evaluated for a large enterprise. One key requirement is the ability to maintain consistent configurations across hundreds of virtual machines and containers, ensuring that all adhere to a baseline setup and automatically remediate any deviations. Which cloud management concept directly supports this requirement?Management and Technical Operations
  29. 129.A global e-commerce company is planning to deploy its customer-facing application in the cloud. They need to ensure that the application remains highly available and offers low latency to users across different continents. Which cloud capability is MOST crucial for achieving these requirements?Business Principles of Cloud Environments
  30. 130.A financial institution is considering using a public cloud for its non-critical development and testing environments. However, their security team is concerned about data segregation, compliance, and the potential for multi-tenancy risks. Which deployment model would offer the benefits of cloud computing while providing a higher degree of isolation and control over the infrastructure compared to a typical public cloud?Cloud Concepts
  31. 131.A company has migrated several applications to a cloud provider and is now responsible for configuring network access control lists (ACLs) and security groups, installing and patching operating systems, and managing application-level security. The cloud provider is managing the underlying physical infrastructure, virtualization, and storage. Which cloud service model is MOST accurately described by this shared responsibility model?Business Principles of Cloud Environments
  32. 132.A healthcare organization is adopting a hybrid cloud strategy for its patient data. Sensitive patient records will reside on-premises, while a public cloud platform will host a new patient portal application that needs to securely access a subset of this on-premises data. To ensure that only authorized cloud services can directly communicate with specific on-premises databases, and to establish a secure, private connection, which network component is essential?Governance, Risk, Compliance and Security
  33. 133.A company is designing a new cloud-native application that needs to serve users across multiple continents with minimal latency. They also want to reduce the load on their origin servers for static content like images and videos. Which networking service should they implement?Cloud Concepts
  34. 134.A cloud customer is implementing a strategy to optimize costs for storing large amounts of infrequently accessed data that needs to be retained for compliance reasons for several years. The data can tolerate retrieval times of several hours. Which storage class should they choose?Cloud Concepts
  35. 135.A startup's risk register flags a minor risk: a rarely used internal reporting dashboard could be briefly unavailable during maintenance windows. The cost of adding redundancy far exceeds the potential business impact, so leadership formally documents the risk and decides to take no further action, monitoring it periodically. Which risk response strategy is being used?Governance, Risk, Compliance and Security
  36. 136.After several employee accounts were compromised through phishing attacks that captured only usernames and passwords, a company's security team implements a requirement that users must also enter a one-time code generated by a mobile app before accessing cloud resources. This change strengthens which component of the identity and access management (IAM) process?Governance, Risk, Compliance and Security
  37. 137.A cloud provider offers a Service Level Agreement (SLA) for a database service with a guaranteed uptime of 99.9%. If a month has 30 days, what is the maximum allowable downtime in minutes for the database service in that month?Business Principles of Cloud Environments
  38. 138.A cloud operations team needs to ensure that specific virtual machines (VMs) are automatically shut down outside of business hours to save costs, but remain available during peak usage. Which cloud management practice should they implement?Management and Technical Operations
  39. 139.A cloud architect is designing a disaster recovery solution for a critical application that must have near-zero downtime and minimal data loss (RPO < 15 minutes). The application is currently deployed in a single region. Which strategy should be employed to meet these demanding recovery objectives?Cloud Concepts
  40. 140.A cloud architect is designing a highly available and resilient application that needs to withstand an entire cloud region outage. The application must continue operating with minimal downtime and data loss. Which disaster recovery strategy would be most appropriate for this scenario?Management and Technical Operations
  41. 141.A global e-commerce company experiences predictable traffic spikes during holiday seasons and flash sales. They want to ensure their application can handle these increased loads without over-provisioning resources during off-peak times. Which characteristic of cloud computing specifically addresses this requirement by automatically adjusting resources?Cloud Concepts
  42. 142.A company is migrating its existing data warehouse to a cloud environment. The data warehouse stores petabytes of historical data that is infrequently accessed but must be retained for compliance and occasional analytical queries. Which cloud storage type is most cost-effective for this scenario while meeting the access requirements?Cloud Concepts
  43. 143.A software development team requires a cloud environment where they can quickly provision virtual machines, storage, and networking components. They need full administrative control over the operating systems and installed software, but they don't want to manage the underlying physical hardware. Which cloud service model is most appropriate for their needs?Cloud Concepts
  44. 144.A German hospital wants to migrate patient records to a public cloud but is required by national law to ensure the data remains subject to German legal jurisdiction and is not accessible under foreign government requests. Which concept describes this requirement?Governance, Risk, Compliance and Security
  45. 145.A large enterprise is evaluating two cloud storage vendors for a contract involving sensitive financial data. Instead of conducting its own costly on-site security audit of each vendor, the enterprise requests each vendor's independent SOC 2 Type II report to evaluate their security controls over a sustained period. What is the primary purpose of relying on a SOC 2 Type II report in this scenario?Governance, Risk, Compliance and Security
  46. 146.A cloud infrastructure team wants to reduce risk from standing administrative credentials. They implement a system where administrators must check out temporary, time-limited elevated credentials from a secure vault to perform specific tasks, and every privileged session is recorded for later audit. Which security approach does this describe?Governance, Risk, Compliance and Security
  47. 147.A company is planning to move its monolithic, on-premises enterprise resource planning (ERP) system to a public cloud. The system is highly customized and tightly integrated with several other internal applications. The company wants to leverage cloud-native features and improve agility in the long term, even if it requires significant initial effort. Which migration approach is BEST suited for this scenario?Business Principles of Cloud Environments
  48. 148.A cloud customer needs to establish a highly secure and dedicated network connection between their on-premises data center and their public cloud environment. This connection must offer consistent bandwidth and lower latency than internet-based VPNs. Which networking solution should they implement?Cloud Concepts
  49. 149.A startup is considering two cloud deployment options for its new application. Option A involves renting virtual machines and managing the operating system, middleware, and application stack (IaaS). Option B involves using a managed platform where the cloud provider handles the OS, runtime, and scaling, while the startup focuses on code (PaaS). The startup has limited IT staff and wants to minimize infrastructure management. Which financial implication is a key driver for choosing Option B over Option A?Business Principles of Cloud Environments
  50. 150.A company is implementing a new cloud governance framework. They need to categorize and track all cloud resources (VMs, storage buckets, databases) by department, project, and environment (dev, staging, prod) for cost allocation, security policy enforcement, and reporting. Which cloud management practice is essential for enabling this level of granular organization and control?Management and Technical Operations