Cloud Security Controls Flashcards

1
Q

Standard Security Controls

A
Patches & Updates
Change Defaults
Firewall
IPS/IDS
SDLC
Logging and Monitoring
Anti-DOS Systems
Encryption
Endpoint Host Protection
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Cloud-Specific Security Controls

A

IAM Policy

Bucket Enabling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Kubernettes Security Controls

A
Update
Restrict API access
Restrict SSH access
Use namespaces
Network policies
Do not run as root
IAM access
Security reviews
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Docker Security Controls

A
Update
Do not expose daemon to container
Set user
Limit access
No new privileges flag
-icc false flag
Selinux
Read-only 
Static analysis tools
Logging
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Cloud Security Control Tools

A
Qualys
Prisma cloud
Aqua cloud
Tenable
Kube-bench
Sumo Logic
How well did you know this?
1
Not at all
2
3
4
5
Perfectly