Week 2-Security Flashcards
What are the 4 key strategic benefits of AWS security services and solutions?
- Prevent:
- Detect
- Respond
- Remediate
AWS supports more ________________ and _______________ than any other offering,
including PCI-DSS, HIPAA/HITECH, FedRAMP, GDPR, FIPS 140-2, and NIST 800-171, helping customers
satisfy compliance requirements for ____________________________________.
- security standards
- compliance certifications
- virtually every regulatory agency around the globe
What are the 4 benefits of compliance on AWS?
- Third-Party validation for 1000s of global requirements:
- Inherit the latest security controls AWS uses on its own infrastructure
- Streamline and automate compliance:
- Automated Compliance Reporting:
_______ and ____________ is a shared responsibility between AWS and the customer.
- Security
2. Compliance
Security and Compliance is a shared responsibility between AWS and the customer. What is AWS responsible for here vs the customer?
AWS: AWS operates, manages
and controls the components from the host operating system and virtualization layer down to the
physical security of the facilities in which the service operates.
2. The customer assumes responsibility and management of the guest operating system (including
updates and security patches), other associated application software as well as the configuration of
the AWS provided security group firewall
What is the difference between security in the cloud vs security on-premises?
• In the cloud, you don’t have to manage physical servers or storage devices.
• Instead, you use software-based security tools to monitor and protect the flow of information into and out
of your cloud resources.
While AWS manages security of the cloud, you are responsible for security in the cloud. Explain what this means.
This means that you retain control of the security you choose to implement to protect your own content,
platform, applications, systems, and networks no differently than you would in an on-site data center.
AWS security controls provides AWS customers with _____ and ______
Flexibility and agility
What are 4 benefits of AWS Security?
- Keep Your Data Safe
– The AWS infrastructure puts strong safeguards in place to help protect your privacy.
– All data is stored in highly secure AWS data centers. - Meet Compliance Requirements
– AWS manages dozens of compliance programs in its infrastructure.
– This means that segments of your compliance have already been completed. - Save Money
– Cut costs by using AWS data centers. Maintain the highest standard of security without having to manage your own facility - Scale Quickly
– Security scales with your AWS Cloud usage.
– No matter the size of your business, the AWS infrastructure is designed to keep your data safe.
What are 4 benefits of AWS Security?
- Keep Your Data Safe
– The AWS infrastructure puts strong safeguards in place to help protect your privacy.
– All data is stored in highly secure AWS data centers. - Meet Compliance Requirements
– AWS manages dozens of compliance programs in its infrastructure.
– This means that segments of your compliance have already been completed. - Save Money
– Cut costs by using AWS data centers. Maintain the highest standard of security without having to manage your own facility - Scale Quickly
– Security scales with your AWS Cloud usage.
– No matter the size of your business, the AWS infrastructure is designed to keep your data safe.
What does AWS Cloud compliance enable?
Enables you to understand the robust controls in place at AWS to maintain security and data protection
in the cloud. As systems are built on top of AWS Cloud infrastructure, compliance responsibilities will be shared.
List some programs with which AWS complies with:
-AWS provides customers a wide range of information on its IT control environment in whitepapers, reports, certifications, accreditations, and other third-party attestations.
With AWS, the customer manages what things about your data? (hint: 4 things)
- The privacy controls of your data
- Control how your data is used
- Who has access to it,
- How it is encrypted.
Describe the following:
- Data control
- Data Privacy
- Data sovereignty
Data control: AWS tools determine where your data is stored, how it is secured, and who has access to it
How do you implement privacy protection?
Based on your specific industry requirements and satisfy regulators and auditors using our services, tooling, and resources to control and protect your data.