Security I Flashcards

1
Q

Why do hackers target clouds?

A

Clouds are a treasure trove of information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are DDOSs?

A

Attacks which come from multiple resources that consume all resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How to defend a cloud?

A

Don’t rely on security measures as a be-all end-all solution
Implement encryption
Don’t store passwords using reversible encryption
Don’t store sensitive information in the cloud
Check for vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Security measures are cheaper when implemented on a mass scale (T/F)

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Cloud providers often hire security experts and subject matter experts (T/F)

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Deployment of security updates tends to be much quicker (T/F)

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

There are both internal and external threats (T/F)

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Cloud providers ultimately focus on individuals (T/F)

A

False. They focus on securing for the greater good.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are some important security safeguards?

A
Auditing
Vulnerability testing
Independent pen-testing
Defined policies
Allow users to set own policies (user-level data security)
VPNs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

PCI DSS

A

Payment Card Industry Data Security Standard
Certification that ensures that the provider can handle payments
Provider has to undergo audits and protect data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

SOC 2 Type 2

A

Service Organization Controls
Ensures data security at the highest level
Involves long-term testing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

SOC 1 is for less comprehensive systems (T/F)

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

SOC2 is for more comprehensive systems (T/F)

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly