A company is implementing a vulnerability management program and moving from an on-premises environment to a hybrid IaaS cloud environment. Which of the following implications should be considered on the new hybrid environment?
A.
The current scanners should be migrated to the cloud
B.
Cloud-specific misconfigurations may not be detected by the current scanners
C.
Existing vulnerability scanners cannot scan IaaS systems
D.
Vulnerability scans on cloud environments should be performed from the cloud
Ans is B
Traditional vulnerability scanners: These scanners are often designed for on-premises environments and might not be equipped to identify cloud-specific vulnerabilities or misconfigurations.
Cloud platforms have unique security features: Each cloud platform (e.g., AWS, Azure, GCP) has its own security posture and configuration options, which traditional scanners might not be able to assess effectively.
B) Cloud-specific misconfigurations
If they move to an Azure or Google cloud, then Prowler, for example, wouldn't be able to scan for misconfigurations on those since it only works on AWS. Of the 4 choices, this one makes the most sense. See below for reference.
From CompTIA Certmaster Topic 12B: Analyzing Cloud Vulnerabilities
Prowler (github.com/toniblyx/prowler) is an audit tool for use with AWS only. It can detect misconfigurations and security issues, such as weak passwords, unpatched systems, and insecure protocol use. It can also be used to evaluate cloud infrastructure against the CIS Benchmarks™ for AWS (cisecurity.org/benchmark/amazon_web_services) and perform regulatory compliance checks.
Correct
Cloud-specific misconfigurations may not be detected by the current scanners that are designed for on-premises environments, as they may not have the visibility or access to the cloud resources or the cloud provider’s APIs.
upvoted 1 times
...
This section is not available anymore. Please use the main Exam Page.CS0-003 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
sujon_london
Highly Voted 9 months agoCyberMom
Most Recent 4 days, 23 hours agodave_delete_me
6 months, 4 weeks agoRobV
11 months, 2 weeks ago[Removed]
12 months agoAlizade
1 year agokmordalv
1 year, 2 months ago