General Security Flashcards

1
Q

What is used to encrypt data at rest

A

AES 256

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which Snowflake edition is PCI DSS compliant

A

Business Critical Edition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does Tri-Secret Secure offer

A

Provides encryption keys for multiple layers of data security; available on business-critical edition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the three security items required in Tri-Secret Secure

A
  • Snowflake encryption key
  • Customer encryption key
  • Customer creds with role based access
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which edition is re-encrypted annually

A

Enterprise Edition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which edition has in memory encryption keys that are unique to each customer

A

Virtual Private Snowflake

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which edition dedicates each customer their one private dedicated virtual servers, load balancer, and metadata store

A

Virtual Private Snowflake

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

T/F by design snowflake privileges cannot be granted to a user, they can only be granted to a role

A

TRUE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Who can provide permission to EXECUTE_TASK

A

ACCOUNTADMIN

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Column Level Security includes what two features

A

Dynamic Data Masking
External Tokenization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

With column level security, when does masking occur

A

At query time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What kind of masking can be done

A

masked, partially masked, obfuscated, or tokenized data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

T/F you can create objects using a secondary role

A

False, CREATE statements come from the primary role only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly