Security Architecture Flashcards
What could you implement so users within an organization can manage fewer credentials?
SSO
What is a jump server?
A secure node that sits between the untrusted network and the secure zone
What would you implement to protect internal company resources that would have no reason to be accessed by the outside?
Jump server
What would you implement to secure administrative access to internal resources while minimizing traffic through the security boundary?
Implementing a bastion host
What must be considered when designing a high-availability network?
- Ease of recovery
- Responsiveness
What is a cold site?
- The most cost-effective option for a backup data center
- A backup facility that has the necessary infrastructure but no active IT systems or data until it is needed
- Not fully equipped
What site would be best for an organization building a new backup data center with RTO and RPO values around two days?
Warm site
If a U.S.-based cloud-hosting provider wants to expand its data centers to new international locations, what should they consider first?
Local data protection regulations
What is a security measure that is put in place to satisfy the requirements of a security policy when the primary control cannot be implemented?
Compensating control
What has been implemented when a host-based firewall on a legacy Linux systems allows connections only from specific internal IP addresses?
Compensating control
What solution would fulfil the need for a low-cost application-hosting solution that is cloud-based?
Serverless framework
What should a company consider if they are considered about weather events causing damage to the server room and downtime?
Geographic dispersion
After a recent vulnerability scan, a security engineer needs to harden the routers within the corporate network, what should they disable?
Web-based administration
How should controls be set up in a data center to ensure data and human life is protected?
Safety controls should fail open
What architecture would be best suited for constantly changing environments?
Containers