3.6 Cloud Security Flashcards

1
Q

Define AZ and its relation to high-availability (2)

A
  1. Availability Zones - the region cloud-services are provided from, i.e. North America, South America, etc..
  2. Having applications, resources, located in or mirrored to different AZs ensures continued function in case of a regional disaster
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Define Resource Policies in relation to the cloud

A

Ability to control who has access to cloud resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Define secrets management in relation to cloud resources

A

Different cloud resources often require secrets in config files and these need to be managed in a central location with the ability to control who has access to them

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What can be implemented to provide integration and auditing capabilities for the cloud?

A

SIEM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Cloud storage security considerations

A
  1. Countries have different regulations regarding storage of data that must be adhered to
  2. Private data stored in the cloud may be accessible to third-party employees and encryption should be considered
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Define CASB

A

Cloud-access security broker

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

4 Cornerstones of CASB (VDTC)

A
  1. Visibility - identifies all cloud services in use
  2. Data security - secures data traveling to, within and stored in the cloud
  3. Threat protection - behavior based identification of threats
  4. Compliance - allows creation of policies to adhere to regulatory standards, such as HIPAA or PCI
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Define SWG

A

Next-Gen secure web gateway, provides more detail than a secure web gateway, application layer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly