Infosec Key Terms Domain 1 Flashcards
1
Q
- Capital Expenditure
- Operational Expenditure
- Elasticity
- Mobility
- Scalability
A
- Capital Expenditure - this is lowered when moving to cloud; i.e. Hardware, buildings, equipment
- Operational Expenditure - this is also lowered when moving to cloud; i.e. utility costs, maintenance
- Elasticity - ability to grow or shrink IT assets (i.e. # of users) without excess
- Mobility - being able to access cloud from anywhere
- Scalability - ability to increase of decreases services
2
Q
NIST 5 Basic Characteristics of Cloud Computing (BRO-ME) +1 from ISO
A
- Broad network access - ability to access cloud via any platform (i.e. mobile, web browser) regardless of user’s location
- on-demand services - cloud is always on and accessible; able to +- storage with little to no intervention with CSP
- resources pooling - cloud provider able to scale resources to each customer as needed
- measured service - only pay for what you use
- rapid elasticity - cloud increase or decrease resources on its own
- Mult-tenancy - several customers on one device but are seperated by design
3
Q
Concerns moving to cloud (5)
A
- Security
- Privacy
- Compliance
- Interoperability
- Lock-ins
4
Q
IPS Elements
A
- IaaS - Block storage, compute, network
- PaaS - Database, Object Storage, Identity, Software Testing, Runtime, Queue
- Application - Monitoring, Content, Collaboration, Communication, Finance
5
Q
- Cloud Customer vs Cloud User
- Cloud Service Broker
- Cloud Service Provider
- Managed Service Provider
A
- Cloud Service Broker - liasion between customer and provider; looks to extend or enhance value to customers who are looking to move to cloud
- CSP - the vendor offering the services; the provider DICTATES the technology and operational procedures
- Managed Service Provider - CONSUMER dictates the techonlogy and operating procedure (usually has a NOC)
6
Q
IaaS
A
- Most basic cloud service offering; customer has ability to install all software including OS
- Customer has most control
Benefits
1. Pay for what you use
2. scalability
3. reduced cost of ownership
4. Reduced Energy and cooling costs with GREEN IT
7
Q
PaaS
A
8
Q
SaaS
A
9
Q
Building blocks of cloud computing
A
10
Q
- Containers
- Mutable infrastructure
- Immutable
A
11
Q
Public Cloud and benefits
A
12
Q
Private Cloud and benefits
A
13
Q
Community Cloud and benefits
A
14
Q
Hybrid Cloud and benefits
A
15
Q
Hypervisor Type 1 and Type 2 Overview
A
16
Q
Hypervisor Type 2 Risks
A
17
Q
Define Virtualization and the primary drivers
A
18
Q
Security Controls in Virtual Environment
1. Trusted Zones
2. Snapshot
3. Customer retain responsiblity to implement:
A
19
Q
Management Plane
A