Results
You’re not ready,
Back to the Books
HD Quiz powered by harmonic design
#1. Includes the policy, process, and internal controls that direct how an organization is run, relies on the compliance function to ensure that directives are being followed.
#2. Substantive testing, looks at the accuracy and integrity of transactions that go through processes and information systems. True or False
#3. The CCM and EU GDPR are best practices and/or standards that can be leveraged to create a cloud governance framework. True or False?
#4. Application Security: CI/CD pipelines can actually enhance security through supporting immutable infrastructures, automating security testing, and providing extensive logging of application. True or False
#5. You have a access security concern that is not covered in the contract and no way to enforce it, this is know as a.
#6. When it comes to IaaS and SaaS, who is primarily responsible for IAM?
#7. Software Defined Networks (SDN) offers the ability to maintain segregation and isolation for the multitenant environment. True or False
#8. Mapping an identity (including roles, personas, and attributes) to an authorization.
#9. You need to perform a bulk security tests on the images in your network, which would be the best approach?
#10. When it comes to Application security how would you prevent data modification.
#11. A PaaS vendor will let you VA test your application code and test their platform as well. True or False
#12. With securing cloud data transfers, most cloud provider APIs use Transport Layer Security (TLS) by default. True or False
#13. Cloud services offered by a provider to a limited and well-defined number of parties. is defined as which.
#14. Both China and Russia require that user data be localized. True or False
#15. What are the two main protocols used in SAN Traffic.
#16. Which of the following is not a benefit of SDN Security.
#17. Which of the following is NOT considered a part of Common Criteria?
#18. Relevant industry best practices, global standards, and regulations can be used to assist in building a cloud governance framework. True or False.
#19. Fuzz Testing: Trying to generate an error code while the application is running is an example of?
#20. You can implementing software agents in a serverless environment. True or False
#21. This publicly available high-level SOC report contains a statement from an independent CPA that a SOC engagement was performed.
#22. Three layers of a SAN include all except.
#23. Private cloud governance depends on who owns and operates the private cloud: If you outsource a private cloud, governance changes. True or False
#24. Container systems usually consist of the following except.
#25. Which of the following is incorrect?
#26. Data is encrypted in the PaaS application or the client accessing the platform is known as.
#27. Compliance testing looks at the accuracy and integrity of transactions that go through processes and information systems. True or False
#28. Auto-scaling and failover are the two most important attributes that a virtual appliance should have in a cloud environment. True or False
#29. By placing an encryption proxy in a trusted area between the cloud user and the cloud provider you will ensure the data transfer is secure, True or False
#30. The primary security responsibilities of the cloud provider in compute virtualization are to enforce isolation and maintain a secure virtualization infrastructure. True or False.
#31. Can be used to identify the virtual drives that can be accessed within a zone.
#32. Access controls in the cloud should be implemented in all of the layers except.
#33. Which of the following is not a component of a Container.
#34. When using immutable servers, you should disable remote access and integrate file integrity monitoring because nothing in the running instances should change. True or False.
#35. To Secure the Management Plane a Provider must include the following, except?