Pluralsight CCSP Domain 4 Flashcards
1
Q
Trusted Platform Module
A
- can create cryptographic keys
- protect CI of CIA triad
*
2
Q
FIPS 140-2 Cryptographic Modules
A
3
Q
Hardware Security Module
A
if hacker compromises server, HSM is seperate from server and therefore keys cannot be retreived
4
Q
SSL
A
The purpose of SSL is to encrypt the communication channel between two endpoints. In this example, it is the end user and the server.
5
Q
STRIDE and DREAD
A
- Spoofing
- Tampering
- Repudiation
- Information Disclosure
- Denial of Service
- Escalation of Privileges
- Damage
- Reproduceability
- Exploitability
- Affected Users
- Discoverability
6
Q
IaaS and PaaS storage type
A
IaaS - object and volume storage
PaaS - databases and big data, structured and unstructured