Cloud Services and Delivery Models Flashcards

1
Q

Software as a service (SaaS)

A

• On-demand software
• No local installation
• Why manage your own email distribution?
Or payroll?

  • Central management of data and applications
    • Your data is out there
  • A complete application offering
    • No development work required
    • Google Mail
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Infrastructure as a service (IaaS)

A
  • Sometimes called Hardware as a Service (HaaS)
    • Outsource your equipment
  • You’re still responsible for the management
    • And for the security
  • Your data is out there, but more within your control
  • Web server providers
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Platform as a service (PaaS)

A

• No servers, no software, no maintenance team, no HVAC
• Someone else handles the platform,
you handle the development

• You don’t have direct control of the data, people,
or infrastructure
• Trained security professionals are watching your stuff
• Choose carefully

  • Put the building blocks together
    • Develop your app from what’s available on the platform
    • SalesForce.com
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Cloud deployment models

A
  • Private - Your own virtualized local data center
  • Public - Available to everyone over the Internet
  • Hybrid - A mix of public and private

• Community - Several organizations
share the same resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Local and cloud resources

A

• On-premise
• Your applications are on local hardware
• Your servers are in your data center
in your building

  • Hosted
    • Your servers are not in your building
    • They may not even be running on your hardware
    • Usually a specialized computing environment

• Cloud
• Entire application instances can be created and
torn down on-demand
• Resources are available as needed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Connecting to the cloud

A
  • Existing Internet connection
    • Browser-based, SSL encryption

• VPN (Virtual Private Network)
• Encrypted tunnel for all traffic between
you and the cloud
• Will probably require some additional
hardware on both ends

  • Direct connection
    • Co-location, same shared data center
    • High speed 10 Gigabit connection
    • No external traffic (added security)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Managing cloud security policies

A

• Clients are at work, data is in the cloud
• How do you keep everything secure?
• The organization already has well-defined security
policies

• How do you make your security policies work in the cloud?
• Integrate a CASB (Cloud Access Security Broker)
• Implemented as client software, local security
appliances, or cloud-based security solutions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Cloud access security broker (CASB)

A
  • Visibility
    • Determine what apps are in use
    • Are they authorized to use the apps?
  • Compliance
    • Are users complying with HIPAA? PCI?
  • Threat prevention
    • Allow access by authorized users, prevent attacks

• Data security
• Ensure that all data transfers are
encrypted
• Protect the transfer of PII with DLP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly