Limited-Time Offer: Enjoy 50% Savings! - Ends In 0d 00h 00m 00s Coupon code: 50OFF
Free Exam Questions

Managing-Cloud-Security Exam Questions & Answers

WGU Managing Cloud Security (JY02)  •  WGU

205 Questions Updated Sep 2026 99% Pass Rate
Get Full Access

100% money-back guarantee

Sample Managing-Cloud-Security Questions

Practice with real exam-style questions, each with the verified correct answer and explanation.

Q1 MultipleChoice

An organization is evaluating which cloud computing service model it should implement. It is considering either platform as a service (PaaS) or software as a service (SaaS). Which risk associated with SaaS can the organization avoid by choosing PaaS?

Correct Answer: B
Explanation:

With SaaS, applications are delivered entirely by the provider, and customers have little to no control over the underlying platform or data portability. This creates a higher risk of vendor lock-in, as migrating away from one SaaS provider to another may require reworking applications or losing features.

In contrast, PaaS gives customers more flexibility by allowing them to build, deploy, and manage their own applications while relying on standardized frameworks and platforms. Because applications are customer-managed, switching providers or migrating workloads can be easier compared to SaaS.

Q2 MultipleChoice

A customer requests that a cloud provider physically destroys any drives storing their personal dat

a. What must the provider do with the drives?

Correct Answer: C
Explanation:

Cloud providers typically manage multi-tenant infrastructure, where physical hardware is shared among customers. Therefore, drives are not destroyed for each customer unless explicitly required in the contract. If the customer's agreement specifies dedicated hardware disposal, then the provider must comply by physically destroying the drives.

Cryptographic erasure and degaussing are valid sanitization methods, but they may not meet the specific contractual requirement of physical destruction. Insurance clauses are unrelated to disposal.

This question underscores the importance of negotiating contractual terms in cloud agreements. Customers handling highly sensitive or regulated data may require physical destruction, while others may accept logical erasure. Clear agreements ensure both compliance and alignment of security responsibilities.

Q3 MultipleChoice

A governmental data storage organization plans to relocate its primary North American data center to a new property with larger acreage. Which defense should the organization deploy at this location to prevent vehicles from causing harm to the data center?

Correct Answer: C
Explanation:

Bollards are physical barriers designed to prevent vehicles from ramming into or breaching secure facilities. They are often placed at entrances, around perimeters, or in front of critical infrastructure like data centers.

Locks, cameras, and fences provide important physical security, but they cannot stop a high-speed vehicle from causing damage. Cameras record activity, fences create boundaries, and locks secure access points, but only bollards physically block or mitigate vehicle attacks.

Governmental and critical infrastructure sites commonly deploy bollards to protect against both accidental collisions and deliberate vehicle-borne attacks. Combined with layered security measures---such as surveillance and fencing---they enhance resilience against physical threats to sensitive data centers.

Q4 MultipleChoice

An organization creates a plan for long-term cloud storage of its backup dat

a. What should the organization address to avoid losing access to its data?

Correct Answer: C
Explanation:

The most critical concern in long-term cloud storage is key management. If encryption keys are lost, corrupted, or improperly rotated, the organization will lose the ability to decrypt its own data, rendering backups unusable. This issue is particularly serious because cloud storage almost always relies on encryption to secure sensitive or regulated information.

While regulatory compliance, quantum threats, and change tracking are important, none directly prevent permanent data loss. The reliability of key management ensures that access to long-term archival data is preserved across changes in personnel, technology, and vendors.

Best practices include using centralized key management systems (such as Hardware Security Modules or cloud Key Management Services), applying role-based controls, and performing periodic key rotation and escrow. Addressing key management in the backup plan ensures that data will remain accessible for years or decades, regardless of technological shifts.

Q5 MultipleChoice

Which characteristic of cloud computing refers to sharing physical assets among multiple customers?

Correct Answer: C
Explanation:

Resource pooling is one of the core characteristics of cloud computing defined by NIST. It refers to the provider's ability to serve multiple customers by dynamically allocating and reallocating computing resources such as storage, processing, memory, and network bandwidth. These resources are abstracted using virtualization, ensuring that customers remain isolated from one another even though they share the same physical assets.

Rapid scalability describes elasticity, on-demand self-service allows users to provision resources without provider intervention, and measured service refers to metering usage. None of these concepts directly describe the multi-tenant model of shared resources.

Resource pooling improves efficiency, reduces costs, and provides flexibility, but it also introduces new security considerations such as data isolation and hypervisor security. Customers must ensure that providers implement strong controls to prevent data leakage or cross-tenant compromise.

Get access to all 205 verified questions with detailed answers.

Unlock All Managing-Cloud-Security Questions

Frequently Asked Questions

The exam covers cloud security fundamentals, identity and access management, data protection, network security, compliance and governance, and incident response in cloud environments. It also includes practical scenarios involving major cloud platforms like AWS, Azure, and Google Cloud.

The exam typically lasts 2 hours and consists of multiple-choice questions and performance-based items. The exact number of questions may vary, but candidates should expect around 60-80 questions covering various cloud security domains.

WGU typically requires completion of prerequisite courses in the Cloud Security degree program before sitting for the JY02 exam. Students should have foundational knowledge of cloud computing concepts and general IT security principles.

To pass the JY02 exam, candidates generally need to achieve a scaled score of 70% or higher. The exact passing score may vary based on WGU's competency requirements and exam difficulty adjustments.

Preparation should include completing all required coursework in the WGU Cloud Security program, studying official study materials, reviewing cloud security documentation from major providers, and practicing with sample questions. Hands-on experience with cloud platforms and security tools is highly recommended.
Exam Details
  • Exam CodeManaging-Cloud-Security
  • VendorWGU
  • Total Questions205
  • LanguageEnglish
  • Last UpdatedSep 3, 2026
4.9/5

Pass Managing-Cloud-Security First Time

Get all 205 exam questions with verified answers and 90-day free updates.

Buy Now & Pass
  • PDF + Practice Test Bundle
  • 90-Day Free Updates
  • 100% Money-Back Guarantee
  • Instant Download
  • 24/7 Customer Support
99% Pass Rate Trusted by 50,000+ IT professionals