Cloud Security Controls Flashcards
1
Q
Standard Security Controls
A
Patches & Updates Change Defaults Firewall IPS/IDS SDLC Logging and Monitoring Anti-DOS Systems Encryption Endpoint Host Protection
2
Q
Cloud-Specific Security Controls
A
IAM Policy
Bucket Enabling
3
Q
Kubernettes Security Controls
A
Update Restrict API access Restrict SSH access Use namespaces Network policies Do not run as root IAM access Security reviews
4
Q
Docker Security Controls
A
Update Do not expose daemon to container Set user Limit access No new privileges flag -icc false flag Selinux Read-only Static analysis tools Logging
5
Q
Cloud Security Control Tools
A
Qualys Prisma cloud Aqua cloud Tenable Kube-bench Sumo Logic