Results
You’re not ready,
Back to the Books
HD Quiz powered by harmonic design
#1. Of the cloud service models who is responsible for physical security on premises.
#2. In which phase of the Data Lifecycle deploys an Access Controls list and Rights Management?
#3. Combines both device and user authentication to provision network access to resources dynamically.
#4. Which Layer of the SAN does network devices include switches, routers, bridges, gateways, and even cables reside?
#5. A point-in-time look at the design of the controls is known as?
#6. Data classification will often rely on metadata (data about the data) such as tags and labels that define the classification level of the data and how it should be handled and controlled. True or False.
#7. Software Defined Networks (SDN) offers the ability to maintain segregation and isolation for the multitenant environment. True or False
#8. Providers will usually encrypt all customer data at which level.
#9. You can implementing software agents in a serverless environment. True or False
#10. With immutable servers, you can increase security by patching and testing images and replacing non-patched instances built off the newly patched image. True of False with new
#11. You need to perform a bulk security tests on the images in your network, which would be the best approach?
#12. Compute virtualization abstracts the running of code (including operating systems) from the underlying hardware. True or False
#13. Which of the following is not one of the four NIST/ISO/IEC deployment models.
#14. Software Defined Network consist of which three planes except.
#15. a service exposed by the provider, where the customer doesn’t manage any of the underlying hardware or virtual machines and simply accesses exposed function is known as a?
#16. When it comes to Application security how would you prevent information disclosure?
#17. Compliance testing looks at the accuracy and integrity of transactions that go through processes and information systems. True or False
#18. A workload is a unit of processing. It can be executed on a physical server, on a virtual server, or in a container. True or False
#19. This publicly available high-level SOC report contains a statement from an independent CPA that a SOC engagement was performed.
#20. In which cloud service models is the customer responsible for the client access endpoints.
#21. Includes managing overall risk for the organization, aligned with the organization’s governance and risk tolerance.
#22. When it comes to Application security how would you prevent Elevation of Privilege.
#23. Which of the following is incorrect?
#24. Container systems usually consist of the following except.
#25. Substantive testing is used to determine whether controls have been properly designed and implemented. True or False
#26. The ability to move from one environment to another with minimal changes required is called.
#27. Substantive testing, looks at the accuracy and integrity of transactions that go through processes and information systems. True or False
#28. Which of the following is NOT considered a part of Common Criteria?
#29. With securing cloud data transfers, most cloud provider APIs use Transport Layer Security (TLS) by default. True or False
#30. In order to implement the Immutable Workloads approach you would need the following except.
#31. Which of the following is not a benefit of SDN Security.
#32. Application Security: CI/CD pipelines can actually enhance security through supporting immutable infrastructures, automating security testing, and providing extensive logging of application. True or False
#33. Which of the following can be used for VA testing in larger environments and allows for replication of the production environment.
#34. The ability for system components to work together to deliver a service is called.
#35. Which of the following is not one of the five Trust Services Criteria that a CSP will attest to.