Section 3: Certificate of Cloud Security Knowledge (CCSK) V4 (Anthony Sequeira) Flashcards

1
Q

Which of the following is considered a valid security benefit that derives from SDN adoption?

A.Increase in CapEx compared to OpEx
B.Virtual networks make isolation easier
C.Access to network hardware is always direct
D.There is no longer a need for specialized operational staff members

A

B.Virtual networks make isolation easier

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Virtual appliances can present challenges in cloud networks today. Which of the following is not a valid consideration in this regard?

A.There is a high velocity of change
B.They should offer support for auto-scaling in rapid elastic environments
C.They may increase costs and performance requirements
D.Cloud components tend to be centralized which makes them more difficult to manage

A

D.Cloud components tend to be centralized which makes them more difficult to manage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Since REST APIs function with HTTP, what is a simple method of encrypting these calls over the Internet?

A.Use IPsec VPNs
B.Use HTTPS
C.Use SAML
D.Use 802.1x

A

B.Use HTTPS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

When using the IAM system of a cloud provider, what is a common security best practice you should use?

A.Always restrict admin privileges of any kind to the root account
B.Avoid the use of groups if at all possible
C.Use the concept of least privilege
D.Be sure to add user accounts to groups, which then should be added to roles

A

C.Use the concept of least privilege

How well did you know this?
1
Not at all
2
3
4
5
Perfectly