Domain 13 - Security as a Service Flashcards
1
Q
What are the benefits of SecaaS?
A
- Cloud-computing benefits - reduced cap/ex, agility, scalability, redundancy etc.
- Staffing and expertise - SecaaS providers encapsulate their security expertise in their product; not possible by individual industries.
- Intel sharing - across all their customers. enhances everyone’s security.
- Deployment flexibility - supporting distributed locations
- Insulation of clients - provides a defensive layer between the workload and the internet
- Scaling and Cost - uses cloud native models - pay as you grow.
2
Q
What are the potential concerns with SecaaS?
A
- Lack of visibility - level of detail available in monitoring and incidents may be less; there may be gaps
- Regulatory differences between regions
- Handling of data collected during scans that could potentially be regulated
- Data leakage (e.g. as part of a security investigation, or due to weak tenant isolation controls)
- Changing providers maybe difficult leading to lock-ins
- Migrating from on-prem to SecaaS may require lot of planning
3
Q
What are some example of SecaaS?
A
- Identity, Entitlement and Access Management Services (this may include Policy Def, Policy Enforcement, MFA, Identity Federation etc.)
- CASB - deployed between CSP and CSC (security monitoring)
- Web Security Gateway (proxy that detects malware, filters URLs)
- Email Security (spam filters, malicious attachments, encryption, digital signatures)
- Security Assessments (vulnerability assessments, application security like DAST/SAST/IAST/RASP, cloud platform assessment that inventory cloud assets and check configurations).
- Web Application Firewalls with DDoS defenses
- IDS/IPS systems
- SIEM tools (log data aggregation and analysis)
- Encryption and Key Management
- BCP/DR tools