Ch. 12 Flashcards
What cloud service offers a platform for developing applications and services?
PaaS
What cloud service enables subscribers to use fundamental IT resources - such as computing power, virtualization, data storage, network, etc. - on demand?
IaaS
What cloud service offers application software to subscribers on demand or over the internet and is charged for by the provider on a pay-per-use basis, by subscription, by advertising, or by sharing among multiple users?
SaaS
What is also known as an internal or corporate cloud and is a cloud infrastructure that a single organization operates?
Private cloud
What is a cloud environment composed of two or more clouds that remain unique entities but are bound together to offer the benefits of multiple deployment models?
Hybrid cloud
Which cloud environment is a multi-tenant infrastructure shared among organizations with common computing concerns, such as security, regulatory compliance, performance requirements, and jurisdiction?
Community cloud
Which cloud environment allows the provider to make services-such as applications, servers, and data storage- available to the public over the internet?
Public cloud
What stakeholders includes professionals - such as cloud security architects, network administrators, security administrators, and ethical hackers - responsible for managing and maintaining all aspects of the cloud?
IT professionals
What stakeholder is responsible for conducting forensic examinations against allegations made regarding wrongdoings, found vulnerabilities, and attacks over the cloud?
Investigators
What stakeholder is the first responder for all the security events or occurrences taking place on a cloud?
Incident handlers
What stakeholder is responsible to make sure all the forensic activities are within the jurisdiction and not violating any regulations or agreements?
Law advisors
Which logs, when enabled, record information of all requests made to any bucket, including requests such as GET, PUT, and DELETE, which helps investigators to understand the actions that were performed on a bucket object along with the users who performed these actions?
S3 Server Access Logs
On-demand ________ is a type of service rendered by cloud service providers that allows provisions for cloud resources such as computing power, storage, network, and so on-always on demand, without the need for human interaction with service providers.
self-service
To start the forensic acquisition and analysis process of an Amazon EC2 Instance, what is the first step?
Isolate the compromised EC2 instance from the production environment.
Which Azure logs record information related to all successful and failed requests made to Azure blobs, Azure queue, and Azure table, can be enabled via the Azure portal and record authenticated as well as anonymous requests?
Azure Storage Analytics Logs