CompTIA Security+ Study Guide (SY0-401) Chapter 6: Securing the Cloud
Chapter 6: Securing the Cloud Explain network design elements and components. Given a scenario, select the appropriate solutions to establish host security. Implement the appropriate controls to ensure data security.
Cloud Computing Service Models Software as a Service (SaaS) Platform as a Service (PaaS) Infrastructure as a Service (IaaS)
Cloud Delivery Models Private Public Community Hybrid
Virtualization Type I model is known as “bare metal” Can boot without the operating system Type II model is known as “hosted” Requires the operating system and is dependent on it
Chapter 6: Securing the Cloud Snapshots Patch Compatibility Host Availability/Elasticity Security Control Testing (SCT) Sandboxing
Security and the Cloud Multitenancy Laws and Regulations Various clients reside on the same machine. A flaw in implementation could compromise security. Laws and Regulations The consumer retains the ultimate responsibility for compliance
Cloud Storage DAS (direct attached storage) NAS (network area storage) SANs (storage area networks)