AWS Security principle Flashcards

1
Q

Physical Security

A
Fire detection and suppresion
Power
Climate and Temperature
Management
Storage Device Decommissioning
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Business Continuity Management

A
Business unit checking for 
Avalaibility
Incident Response
Company Wide Executive Review
Communication
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Network Security

A
Secure Network Architecture
Secure Access Points
Transmission Protection
Amazon Corporate Segregation
Fault Tolerant Design
Network Monitoring and Protection
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

AWS Access

A

Account Review and audit
Background Checks
Credential Policy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Secure Design Principle

A

Change Management

  • Software
  • Infrastructure
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Why trust AWS ?

A
Compliance Programs 
Iso27001 (International data)
PCIDSS
HIPAA (MEDICAL DATA)
Check compliance page for local
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Define Familiar Security in AWS ?

A
Visibility
Auditability
Controllability
Agility
Automation
Scale
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What to use for visibility in AWS ?

A

AWS config - allow to discover entire assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What to use for Auditability in AWS ?

A

Comply with polices and regulations
AWS CloudTrail
Record API call

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What to use for data controllability in AWS ?

A

AWS KMS and AWS CloudHSM
Kind of same service but
AWS KMS - Multi-TENANT (Underline hardware is shared)
AWS CloudHSM - Dedicated security hardware (much more expensive) Compliace FIPS 140-2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What to use for agility in AWS ?

A

AWS CloudFromation
AWS Elastic Beanstalk
Update EC2, Download security patches to varous EC2
Massive update and changes tools

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What to use for repeatability in AWS ?

A

AWS OpsWorks

AWS CodeDeploy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What to use for scale of AWS

A

Every customer gets the same AWS security foundations

Fortune 500 quality services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Other kind of services in AWS related to security ?

A
AWS IAM (Identification Management)
AWS CloudWatch (monitoring)
AWS Trusted Advisor (Get professional advice from machine or human to get more secure)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly