ISC2 Certified Cloud Security Professional (CCSP) Practice Question

A cloud operations team is standardizing Infrastructure as Code (IaC) for its IaaS firewalls, subnets, and virtual machines. They store all Terraform configuration files in a Git repository and use a CI/CD pipeline that automatically runs terraform plan on every pull request and terraform apply only after the change is approved and merged into the main branch. Which core IaC practice does this workflow best exemplify?

  • Manual drift remediation using ad-hoc commands after monthly audits

  • A blue-green deployment strategy to release application versions with zero downtime

  • A GitOps workflow that treats the repository as the single source of truth for infrastructure

  • Terraform state locking to prevent simultaneous runs by different engineers

ISC2 Certified Cloud Security Professional (CCSP)
Cloud Security Operations
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot