AWS Well- Architected Framework - Security Flashcards

1
Q

The Pillars of a Well - Architected Framework?

A

1) Security
2) Reliability
3) Performance Efficiency - effective use of resources to meet the requirement
4) Cost Optimization - reduce cost
5) Operational Excellence - documented practices and procedures.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What does Security Consist of?

A

1) Data Protection
2) Privilege Management
3) Infrastructure Protection - protect data center & VPC level.
4) Detective Controls

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What questions should you ask with Security-Data Protection?

A

1) How are you encrypting and protecting your data at rest?

2) How are you encrypting and protecting you data in transit (SSL)?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What questions should you ask with Security-Privilege Management

A

1) How are you protecting access to and use off the AWS root account Creds?
2) How are you defining roles and responsibilities of system users to control human access to the AWS Management Console and APIs?
3) How are you limiting automated access (such as from apps, scripts, 3rd party tools and services) to AWS resources?
4) How are you managing keys and credentials?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What questions should you ask with Security-Infrastructure Protection

A

1) How are you enforcing network and host-level boundary protection?
2) How are you enforcing AWS service level protection?
3) How are you protecting the integrity of the OS on your EC2 instance?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What questions should you ask with Security- Detective Controls

A

How are you capturing and analyzing AWS Logs?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly