Courseiva
easyMultiple ChoiceObjective-mapped

CV0-004 Practice Question: A cloud security team needs to ensure that all…

A cloud security team needs to ensure that all API calls made to the cloud provider are logged and monitored for suspicious activity. Which service should be enabled?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Enable cloud audit logging for the management console and API calls.

Cloud audit logging services (e.g., AWS CloudTrail, Azure Monitor) are specifically designed to record all API calls to the management console and APIs, providing a centralized log for monitoring and security analysis. Option A (WAF) is incorrect because it filters and monitors HTTP traffic to web applications, not API calls to the cloud provider. Option B (IDS) is incorrect because it monitors network traffic for suspicious activity but does not log API-level actions. Option D (SIEM) is incorrect because it aggregates and analyzes logs from various sources, but it is not itself a logging service for API calls; the underlying audit logging service must still be enabled first.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Deploy a web application firewall (WAF).

    Why it's wrong here

    WAF protects web apps from attacks, but does not log all API calls.

  • Configure an intrusion detection system (IDS) on the network.

    Why it's wrong here

    IDS monitors network traffic, not API-level activity.

  • Enable cloud audit logging for the management console and API calls.

    Why this is correct

    Audit logs capture every API call for compliance and monitoring.

  • Implement a security information and event management (SIEM) system.

    Why it's wrong here

    SIEM ingests logs but does not generate them; you need audit logs first.

About these practice questions

Courseiva writes every CV0-004 question from scratch — 977 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CV0-004 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CV0-004 exam.