CCSP Cloud Platform and Infrastructure Security Practice Question
A security architect is designing a multi-tenant cloud environment. Which type of hypervisor provides the strongest isolation for tenant virtual machines by running directly on the hardware without a host operating system?
⚠ Common exam trap
The trap is confusing Type 1 and Type 2 hypervisors, or assuming containers provide equivalent isolation; candidates must remember that Type 1 runs on bare metal and offers the strongest isolation.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Type 1 hypervisor
A Type 1 hypervisor runs directly on the hardware without a host operating system, providing stronger isolation for tenant virtual machines. This bare-metal architecture reduces the attack surface and prevents tenant VMs from interfering with each other through a host OS. Therefore, it is the correct answer for the strongest isolation in a multi-tenant cloud environment.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Type 1 hypervisor
Why this is correct
A Type 1 hypervisor runs directly on bare-metal hardware without an underlying host OS, eliminating the host kernel as a shared attack surface and providing stronger isolation between tenant virtual machines than hosted Type 2 hypervisors.
- ✗
Type 2 hypervisor
Why it's wrong here
A Type 2 hypervisor runs atop a host operating system, so its attack surface and isolation depend on that host, unlike a bare-metal hypervisor executing directly on hardware. It is tempting because Type 2 hypervisors are easy to install on existing desktops for development and testing.
- ✗
Virtual machine monitor in user space
Why it's wrong here
A user-space virtual machine monitor relies on a host operating system for scheduling and device access, so tenant isolation depends on that host's integrity rather than hardware-enforced separation. It is tempting because user-space monitors are portable and easy to instrument for debugging and research.
- ✗
Container runtime
Why it's wrong here
Container runtimes share the host kernel across tenants, so a kernel exploit crosses tenant boundaries; they virtualise processes, not hardware. It is tempting because containers offer fast startup and high density where workloads are trusted and kernel-level isolation is not required.
Go deeper
Related to this question
About these practice questions
One of 934 original CCSP practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official ISC2 exam blueprint
This CCSP practice question is part of Courseiva's free ISC2 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CCSP exam.