3.6 cybersecurity solutions to the cloud Flashcards
IAM
identity and access management
who gets access and to what
VPC
virtual private cloud
CASB
cloud access security broker
security tool or service that protects cloud-based services. CASBs are placed between cloud service consumers and providers to enforce security policies. They help protect against data leaks and cyber attacks.
compute security groups
A compute security group profile applies security rules to newly-provisioned resources. Security groups are sets of IP filter rules that are applied to a server’s networking. They control the traffic that is allowed to reach and leave the resources that it is associated with.
Security groups work similarly to a firewall. They offer protection at the ports and protocol access level. For example, after you associate a security group with an EC2 instance, it controls the inbound and outbound traffic for the instance.
cloud instance awareness
a feature that allows users to sign in to any cloud account using the default value. It also enables granular security controls across SaaS apps.
SWG
secure web gateway
cloud delivered network security device that protects users from web-based threats.
They are deployed at the network’s boundaries to monitor and stop malicious traffic.
OSI
open systems interconnection
a framework for sending messages between two entities in a network.