D-CIS-FN-01 Sample Questions

D-CIS-FN-01 Sample Questions & Answers

Cloud security and business continuity planning make up nearly half the weighting, alongside application modernization and cloud-service orchestration, digital transformation and reference architecture, and IT transformation with service management.

Launch the full D-CIS-FN-01 simulator →

Showing 10 of 20 free samples.

  1. Question 1Intermediate

    Cloud Security and Business Continuity · Fault Tolerance Mechanisms

    An architect is designing a high-availability solution for a critical database. The requirement is to withstand the failure of a single server without any service interruption. The budget is constrained, so the most cost-effective solution that meets the requirement is preferred. The following diagram illustrates a potential configuration.

    Which fault tolerance mechanism does this configuration represent?

    graph TD subgraph Cluster DB1[DB Server 1] DB2[DB Server 2] DB3[DB Server 3] end LB(Load Balancer) --> DB1 LB --> DB2 LB --> DB3

    Show answer & explanation

    Correct answer: A

    This configuration represents N+1 redundancy. Here, 'N' is the number of components required for the system to operate (e.g., 2 servers to handle the load), and '+1' is the extra component added for failover. If one of the three servers fails, the remaining two can still handle the workload. This is a common and cost-effective way to provide high availability. 2N would require full duplication (4 servers if N=2), and N+M allows for multiple failures. Geographic redundancy involves multiple locations.

  2. Question 2Advanced

    Application, Cloud Services, Orchestration, and Modern Infrastructure · Modern Infrastructure

    A rapidly growing company is deploying a new private cloud environment. They need a solution that simplifies management by integrating compute, storage, and networking into a single, software-defined platform. Their primary goal is operational simplicity and rapid, scalable deployment of virtualized workloads. For a secondary project, they also need a highly scalable, block-based storage solution that can be deployed on commodity hardware, independent of the compute nodes. Which Dell products are best suited for these two distinct requirements?

    Show answer & explanation

    Correct answer: B

    Dell EMC VxRail is a hyperconverged infrastructure (HCI) appliance that tightly integrates compute, storage, virtualization, and management, making it ideal for the primary goal of a simple, scalable private cloud. Dell EMC VxFlex is a software-defined storage (SDS) solution that provides highly scalable and flexible block storage, which can be deployed on commodity hardware, perfectly matching the secondary project's requirement. PowerEdge MX is modular infrastructure, not a complete HCI solution in the same way VxRail is.

  3. Question 3Beginner

    Cloud Security and Business Continuity · Security Control Mechanisms

    True or False: Multi-factor authentication (MFA) protects against account hijacking solely by requiring a user to provide a complex password that meets specific length and character requirements.

    Show answer & explanation

    Correct answer: B

    This statement is false. MFA enhances security by requiring two or more verification factors from independent categories: something you know (password), something you have (a security token or phone), and something you are (biometrics). Complex password requirements are a single-factor control, whereas MFA adds additional, separate layers of verification.

  4. Question 4Advanced

    Cloud Security and Business Continuity · Disaster Recovery and Business Continuity

    Case Study

    Global Bank Inc. is a multinational financial institution subject to stringent regulatory requirements, including GDPR and local financial data sovereignty laws. Their primary data center is in Frankfurt, Germany. The bank's core transaction processing system runs on-premises and is critical to their daily operations. The board has mandated a robust business continuity plan to ensure operations can resume quickly after a regional disaster, such as a prolonged power outage affecting the entire Frankfurt metropolitan area.

    The Chief Technology Officer (CTO) has defined the following business continuity objectives: In the event of a disaster, the transaction system must be operational within 1 hour (RTO = 1 hour), and no more than 15 minutes of transaction data can be lost (RPO = 15 minutes). The disaster recovery (DR) solution must also comply with data sovereignty laws, meaning all data, including backups and replicated data, must remain within Germany.

    The IT team is evaluating different DR strategies. The proposed DR site is in a separate availability zone in Munich, Germany, hundreds of kilometers away. The network link between Frankfurt and Munich is high-speed and reliable. The team needs to choose a DR site type and a data replication method that meets the RTO, RPO, and compliance requirements.

    Given the requirements, what is the most appropriate DR solution for Global Bank Inc.?

    Show answer & explanation

    Correct answer: C

    A hot DR site is a fully operational duplicate of the primary site, allowing for near-instantaneous failover, which is necessary to meet the 1-hour RTO. Synchronous replication ensures that data is written to both the primary and DR sites simultaneously, achieving a near-zero RPO, which satisfies the 15-minute RPO requirement. Locating the site in Munich keeps all data within Germany, meeting data sovereignty laws. A cold or warm site would not meet the stringent RTO, and asynchronous replication might not meet the 15-minute RPO.

  5. Question 5Intermediate

    Digital Transformation, Cloud Computing Reference Architecture, and Introduction to Cloud Computing · Cloud Service Models

    A software development company is choosing a cloud service model for its new application. The company wants to manage the application and its data, but wants to avoid managing the underlying operating system, patching, and server hardware. They need a platform that provides the runtime environment, database, and web server, allowing their developers to focus solely on writing and deploying code. Which cloud service model fits these requirements?

    Show answer & explanation

    Correct answer: B

    Platform as a Service (PaaS) is the correct model. PaaS provides a platform allowing customers to develop, run, and manage applications without the complexity of building and maintaining the infrastructure typically associated with developing and launching an app. The cloud provider manages the OS, hardware, and runtime, while the customer manages their application and data. IaaS would require the company to manage the OS. SaaS would provide a complete application, not a platform for development.

  6. Question 6Intermediate

    Application, Cloud Services, Orchestration, and Modern Infrastructure · Cloud Service Orchestration

    A DevOps team is responsible for deploying a complex, three-tier web application that consists of a web server farm, an application server cluster, and a database. The deployment process must be automated, repeatable, and must manage the dependencies between the tiers (e.g., the database must be ready before the application servers start). Which cloud capability is specifically designed to manage this type of automated, multi-step, and dependency-aware deployment?

    Show answer & explanation

    Correct answer: D

    Service orchestration is the automated arrangement, coordination, and management of complex computer systems and services. It is specifically designed to handle workflows that involve multiple components and dependencies, such as deploying a multi-tier application. While service automation is a related concept (automating individual tasks), orchestration is about coordinating a sequence of automated tasks to deliver a complete service.

  7. Question 7Intermediate

    Cloud Security and Business Continuity · Security Threats

    During a security audit of a large enterprise, it was discovered that the marketing department had signed up for a third-party cloud-based file-sharing service using corporate credit cards to collaborate on a project, without the knowledge or approval of the IT department. This has exposed sensitive company data to a platform that has not been vetted for security or compliance. What is the term for this type of security threat?

    Show answer & explanation

    Correct answer: B

    Shadow IT refers to the use of IT systems, devices, software, applications, and services without explicit approval from the IT department. The scenario where the marketing team uses an unsanctioned cloud service is a classic example of Shadow IT. It creates significant security and compliance risks because the IT department cannot enforce security policies or monitor data on these unauthorized platforms.

  8. Question 8Beginner

    Cloud Service Management and IT Transformation · Cloud Service Portfolio

    What is the primary function of a cloud service catalog within a cloud service portfolio?

    Show answer & explanation

    Correct answer: A

    A cloud service catalog is the user-facing component of the service portfolio. It acts as a 'storefront' or menu where consumers can see what services are available, understand their specifications (like pricing, SLAs, and features), and submit requests for provisioning. Its main purpose is to enable self-service and provide a clear, consistent view of available IT services.

  9. Question 9IntermediateSelect 3

    Cloud Security and Business Continuity · Security Control Mechanisms

    A security architect is designing a defense-in-depth strategy for a new public-facing web application hosted in the cloud. The goal is to protect against common web vulnerabilities and ensure secure user access. Which security control mechanisms should be implemented as part of this strategy? (Select THREE)

    Show answer & explanation

    Correct answers: A, B, D

    A WAF is essential for protecting against web-based attacks like SQL injection and cross-site scripting (XSS).

    MFA is critical for securing user accounts and preventing unauthorized access, even if passwords are compromised.

    An IAM system is fundamental for managing user identities and enforcing the principle of least privilege, ensuring users only have access to the resources they need.

  10. Question 10Beginner

    Application, Cloud Services, Orchestration, and Modern Infrastructure · Modern Applications Characteristics

    Which of the following is a key characteristic of a microservices architecture that distinguishes it from a traditional monolithic application?

    Show answer & explanation

    Correct answer: B

    In a microservices architecture, an application is built as a collection of small, independent services. Each service is self-contained, runs in its own process, and communicates with other services through well-defined APIs. This loose coupling allows individual services to be developed, deployed, and scaled independently, which is a major advantage over monolithic designs where the entire application must be redeployed for any change.

Ready for the real thing?

The full D-CIS-FN-01 simulator has every exam-style question, timed mode, and instant scoring.