1.7 Flashcards
Whats SaaS?
Software as a Service which is an on demand (need to pay to use)
Where is your data located when using SaaS?
Central management of data and applications are all on the cloud.
Whats an example of SaaS?
Gmail, we login using a username and password and everything is there.
Whats IaaS?
(Infrastructure as a Service) Also called Hardware as a Service (HaaS) is when hardware is provided but we need to get it to work.
Who is responsible for the management in a IaaS?
We are responsible for the management and for the security.
Where is the data in an IaaS? and give an example.
Your data is still in the cloud but you have more control over it. EX: Web server Providers.
Whats PaaS?
(Platform as a service) is service where we have no physical servers or software that we need to maintain and no HVAC but we only handle the development.
T/F) We have direct control of the data, people or infrastructure.
False, we dont have have direct control. Instead there is trained security professionals who are watching over your stuff.
What does PaaS provide?
It provides a platform where you can develop your app from whats available on the platform.
What are the cloud deployment models?
- Private (your own virtualized local data center.)
- Public (Available to everyone over the Internet)
- Hybrid (A mix of public and private)
- Community (Several organizations share the same resource)
What are the 3 types of local and cloud resources?
- on-premise (applications on local hardware and server is in the building)
- Hosted (Server not in the building and usually a specialized computing environment)
- Cloud (Resources are available as needed but entire applications can be created and torn down on-demand)
What are the methods of connections to the cloud?
- Existing Internet connection (browser based uses SSL encryption)
- VPN (Encrypted tunnel for all traffic between user and cloud)
- Direct connection (Co-location, same shared data center, high speed, better security since no external traffic)
What does VPN stand for?
Virtual Private Network
Whats a CASB?
Cloud Access Security Broker
What are the characteristics of CASB?
- Visibility (Determine apps in use)
- Compliance (users complying with HIPPA? PCI?)
- Threat prevention (Allow access by authorized users)
- Data security (Ensure all data transfers are encrypted)