Refresh the Page to Try Again!!!
#1. The ability to move from one environment to another with minimal changes required is called.
#2. IaaS volumes can be encrypted using different methods,except.
#3. Fuzz Testing: Trying to generate an error code while the application is running is an example of?
#4. Private cloud governance depends on who owns and operates the private cloud: If you outsource a private cloud, governance changes. True or False
#5. Which of the following is incorrect?
#6. When it comes to Application security how would you prevent Spoofing
#7. Mapping an identity (including roles, personas, and attributes) to an authorization.
#8. Of the cloud service models who is responsible for physical security on premises.
#9. Compute virtualization abstracts the running of code (including operating systems) from the underlying hardware. True or False
#10. Both China and Russia require that user data be localized. True or False
#11. Which of the following is not a benefit of SDN Security.
#12. For cloud overlay networks, in order to span multiple physical networks across a wide area network you can implement which of the following.
#13. When it comes to Application security how would you prevent Elevation of Privilege.
#14. In which phase of the Data Lifecycle does Classifications and Entitlements occur?
#15. A PaaS vendor will let you VA test your application code and test their platform as well. True or False
#16. Volatile memory contains all kinds of potentially sensitive information, who responsible for ensuring strong isolation of volatile memory in the cloud.
#17. Auto-scaling and failover are the two most important attributes that a virtual appliance should have in a cloud environment. True or False
#18. Compliance testing looks at the accuracy and integrity of transactions that go through processes and information systems. True or False
#19. In order to create a logical drive on 100TB hard-drive and have it be identified as a separate drive what would you use?
#20. Providers will usually encrypt all customer data at which level.
#21. This classification approach looks at application, storage location, or the creator of the data as an indicator of sensitive information.
#22. When it comes to IaaS and SaaS, who is primarily responsible for IAM?
#23. A dedicated network of storage devices. It is a combination of hardware and software that offers a block-level storage mechanism.
#24. Allows for a logical grouping of ports or nodes that restricts certain hosts to accessing only specified storage devices
#25. The CCM and EU GDPR are best practices and/or standards that can be leveraged to create a cloud governance framework. True or False?
#26. Many cloud breaches attack those who maintain the cloud, not just the application running in the cloud. True or False
#27. Replacing an exploited server with a newly patched server to stave off an attack is an example of which.
#28. Container systems usually consist of the following except.
#29. Cloud services offered by a provider to a limited and well-defined number of parties. is defined as which.
#30. Performing Vulnerability assessments with agents installed on the server is the best approach in cloud security. True or False
#31. In order to implement the Immutable Workloads approach you would need the following except.
#32. In which phase of the Data Lifecycle employs encryption in transit, application security and data loss prevention?
#33. A bastion network can be defined as a network that data must go through in order to get to a destination, True or False
#34. In which cloud service models is the customer responsible for the client access endpoints.
#35. Audits generally include some two forms of testing. Which include the following. (pick two)
Select all that apply: