Security Flashcards

1
Q

What customers are responsible for

A

IN the cloud, data, configuration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What AWS is responsible for

A

Security OF the cloud, hardware, Operation of Managed Services, Global Infrastructure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

AWS Compliance Programs

A

A set of internal policies and procedures of a company to comply with laws, rules, and regulations

Example: HIPAA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

AWS Artifact

A

No cost, self service portal for on demand access to AWS compliance reports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Amazon Inspector

A

Security benchmark on EC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

AWS WAF

A

Web Application Firewall - Protect applications from web exploits. OWASP top 10 dangerous attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

DDoS Attack

A

A malicious attempt to disrupt normal traffic by flooding a website with a large amount of fake traffic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

AWS Shield

A

Protects from DDoS attacks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

AWS Shield Free vs advanced

A

Free covers from common attacks, and advance covers more sophisticated attacks and DDoS experts 24/7

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Penetration Testing

A

An autorized simulated cyberattack on a computer system. Performed to evaluate the security of the system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

GuardDuty

A

Threat detection service that monitors for malicious, suspicious, and unauthorized behavior. IDS/IPS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

IDS/IPS

A

Intrusion Detection System and Intrusion Protection System

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Key Management Service (KMS)

A

Create encryption keys to encrypt data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Amazon Macie

A

Monitors S3 data access activities for anomalies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Security Groups

A

Acts as a firewall at the instance level - create allow rules

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

NACLs

A

Network Access Control List - acts as a firewal at the subnet level. Create allow/deny rules.

17
Q

AWS VPN

A

Establish a secure and private tunnel from network or device to the AWS global network

18
Q

Site to site VPN

A

Connect on premises network or branch office site

19
Q

AWS client vpn

A

Securely connects users to AWS or on-premises networks