Courseiva

CCSP Cloud Platform and Infrastructure Security Practice Question

A security architect is designing a multi-tenant cloud environment. Which type of hypervisor provides the strongest isolation for tenant virtual machines by running directly on the hardware without a host operating system?

⚠ Common exam trap

The trap is confusing Type 1 and Type 2 hypervisors, or assuming containers provide equivalent isolation; candidates must remember that Type 1 runs on bare metal and offers the strongest isolation.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Type 1 hypervisor

A Type 1 hypervisor runs directly on the hardware without a host operating system, providing stronger isolation for tenant virtual machines. This bare-metal architecture reduces the attack surface and prevents tenant VMs from interfering with each other through a host OS. Therefore, it is the correct answer for the strongest isolation in a multi-tenant cloud environment.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Type 1 hypervisor

    Why this is correct

    A Type 1 hypervisor runs directly on bare-metal hardware without an underlying host OS, eliminating the host kernel as a shared attack surface and providing stronger isolation between tenant virtual machines than hosted Type 2 hypervisors.

  • ✗

    Type 2 hypervisor

    Why it's wrong here

    A Type 2 hypervisor runs atop a host operating system, so its attack surface and isolation depend on that host, unlike a bare-metal hypervisor executing directly on hardware. It is tempting because Type 2 hypervisors are easy to install on existing desktops for development and testing.

  • ✗

    Virtual machine monitor in user space

    Why it's wrong here

    A user-space virtual machine monitor relies on a host operating system for scheduling and device access, so tenant isolation depends on that host's integrity rather than hardware-enforced separation. It is tempting because user-space monitors are portable and easy to instrument for debugging and research.

  • ✗

    Container runtime

    Why it's wrong here

    Container runtimes share the host kernel across tenants, so a kernel exploit crosses tenant boundaries; they virtualise processes, not hardware. It is tempting because containers offer fast startup and high density where workloads are trusted and kernel-level isolation is not required.

About these practice questions

One of 934 original CCSP practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official ISC2 exam blueprint

This CCSP practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CCSP exam.