ISC2 Certified Cloud Security Professional (CCSP) Practice Question

A cloud-based CRM platform is being developed for multiple tenants and will be deployed on a managed Kubernetes cluster. During the test phase, the security architect insists on adding abuse case testing to verify that one tenant cannot deliberately exhaust shared resources. Which activity is the best example of an abuse case test in this context?

  • Launch automated scripts that issue a high volume of API requests to intentionally exceed the tenant's rate limit and monitor throttling and logging behavior.

  • Review user stories and acceptance criteria to ensure all approved business features are implemented before release.

  • Perform static code analysis to detect potential SQL injection flaws in database access modules.

  • Run unit tests to confirm each microservice returns correct responses to valid customer data submissions.

ISC2 Certified Cloud Security Professional (CCSP)
Cloud Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot