Module 13 Quiz Flashcards
The multitenancy nature of cloud environments means conflicts in privacy laws can occur.
True
False
True
A(n) CSA or cloud service agreement is a contract between a CSP and the customer that describes what services are being provided and at what level.
True
False
True
What capabilities should a forensics tool have to acquire data from a cloud?
Examine virtual systems.
Expand and contract data storage capabilities as needed for service changes.
Identify and acquire data from the cloud.
All of the above
All of the above
Which of the following cloud deployment methods typically offers no security?
Hybrid cloud
Community cloud
Public cloud
Private cloud
Private cloud
A CSP’s incident response team typically consists of system administrators, network administrators, and legal advisors.
True
False
True
What are the three levels of cloud services defined by NIST?
OpenStack, FROST, and management plane
SaaS, PaaS, and IaaS
Hybrid, private, and community clouds
CRC, DRAM, and IMAP
SaaS, PaaS, and IaaS
Which of the following is a mechanism the ECPA describes for the government to get electronic information from a provider?
Search warrants
Subpoenas with prior notice
Court orders
All of the above
All of the above
Updates to the EU Data Protection Rules will affect how data is moved during an investigation regardless of location.
True
False
True
In which cloud service level can customers rent hardware and install whatever OSs and applications they need?
SaaS
HaaS
IaaS
PaaS
IaaS
When should a temporary restraining order be requested for cloud environments?
When a search warrant requires seizing a CSP’s hardware and software used by other parties not involved in the case
When cloud customers need immediate access to their data
When anti-forensics techniques are suspected
To enforce a court order
When a search warrant requires seizing a CSP’s hardware and software used by other parties not involved in the case
Amazon was an early provider of Web-based services that eventually developed into the cloud concept.
True
False
True
The cloud services Dropbox, Google Drive, and OneDrive have Registry entries.
True
False
True
Evidence of cloud access found on a smartphone usually means which cloud service level was in use?
HaaS
PaaS
SaaS
IaaS
SaaS
Public cloud services such as Dropbox and OneDrive use Sophos SafeGuard and Sophos Mobile Control as their encryption applications
True
False
True
NIST document SP 500-322 defines more than 75 cloud services, including which of the following?
Backup as a service
Security as a service
Drupal as a service
All of the above
All of the above