Shared Responsibility Model Flashcards

1
Q

What controls within the shared responsibility model are AWS responsible for?

A

Inherited controls: physical and environmental

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What controls do customer and AWS share within the shared responsibility model assuming a non managed service?

A

Patch management:
AWS within infrastructure
Customer OS’ and Apps
Config management:
Customer OS’, DBs and Apps
AWS within infrastructure
Awareness and training:
AWS of it’s employees
Costumer their employees

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What security is AWS responsible for as part of a IaaS?

A

The service foundation:
compute, storage, database, networking
Global infrastructure:
regions, AZs and edge locations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What security is the customer responsible for as part of an IaaS?

A

Customer data
Platform, Apps, IAM
OS, Network config and Firewall config
Encryption - even with KMS still manage keys

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What controls are the responsibility of the customer only?

A

Service and Communications Protection or Zone Security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Managed services reduce both patch and config management responsibilities for the customer what are the managed services within AWS?

A

EFS, FSx, RDS, Aurora, ElastiCache, DynamoDB, DocumentDB, QLDB, Managed Blockchain, Glue, Batch, Lambda, Elastic Beanstalk, Code services, Route 53, Outpost, SQS, Kinesis, MQ

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What responsibilities become AWS’ responsibility as part of a PaaS?

A

Platform and OS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What responsibilities become AWS’ responsibility as part of a SaaS?

A

Platform, OS and Apps

How well did you know this?
1
Not at all
2
3
4
5
Perfectly