Which of the following roles, according to the shared responsibility model, is responsible for securing the company's database in an IaaS model for a cloud environment?
IaaS is an infrastructure delivery model wherein a vendor provides a wide range of compute resources such as virtualized servers, storage and network equipment over the internet. In this model, the business is responsible for maintaining security of anything they own or install on the cloud infrastructure, such as the operating system, applications, middleware, containers, workloads, data and code.
Based on everything ive seen on AWS and AZURE, the cloud provider is responsible for the security of the database in an IaaS model. Im assuming that it being the Iaas model that the database is in the cloud and not on site. In that model the client is only responsible for IAM, customer data, platform/applications, client side data encryption/integrity/authentication, server side encryption, and network traffic protection. Maybe im misreading the question but this seems to be the correct option despite being in the minority.
In IaaS model, the Cloud provider manages only THREE things:
The Physical Network
The Physical Datacenter (Storage)
The Physical Hosts (Compute/Server/VMs)
The client manages their DB applications, Directory structure, Data, IAM, Devices.
It's a client.
The cloud provider is responsible for the security of the infrastructure itself, including the physical data centers, network infrastructure, and the hypervisor. They provide a secure foundation for the customer.
he client, or customer, is responsible for securing the data, applications, operating system, and configurations within the virtual machines (VMs) or instances running in the cloud. This includes securing the database, managing access controls, and implementing security measures within the VM.
Took an AWS exam, and even this certification lists that it is the client's job to securely configure their VPC. They handle physical security, client handles logical.
C. Cloud Provider
In my Security+ Study Guide, the Shared Responsibility model for IaaS says:
"In an IaaS environment, the customer takes over security responsibility for everything that isn't infrastructure --"
Customer Responsibilities = Data, Application, and OS
Vendor Responsibilities = Hardware & Datacenter
"Cloud providers, by their nature, are always responsible for the security of both hardware & the physical datacenter environment. If the customer were handling either of these items, the solution would not fit the definition of cloud computing."
According to the shared responsibility model in an Infrastructure as a Service (IaaS) cloud environment, the Option A: Client is responsible for securing the company’s database
The cloud provide provides the infrastructure, but it’s up to the client to secure their stuff.
The question is asking who is responsible for securing the clients database in the IaaS. That’s the clients job.
A.
Cloud provider is responsible for securing its infrastructure and any managed elements of the environment.
Cloud customer (client) is responsible for securing its workloads, applications, and data.
With an IaaS model, the vendor is responsible for security of the physical data centers and other hardware that power the infrastructure -- including VMs, disks and networks. Users must secure their own data, operating systems and software stacks that run their applications.
C. Cloud provider
In the shared responsibility model for cloud computing, the responsibility for securing different components of the cloud environment is divided between the cloud provider and the cloud customer (client).
This section is not available anymore. Please use the main Exam Page.SY0-601 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
sarah2023
Highly Voted 1 year, 7 months agoCisco103
1 year, 7 months agoCyberman12
Most Recent 9 months, 2 weeks ago_deleteme_
1 year, 1 month agoSnug
1 year, 2 months agotoffer96
1 year agocaseymd85
1 year, 3 months agoYomzie
1 year, 3 months agopsowrong
1 year, 3 months ago12f1a9a
1 year, 4 months agoChopSNap
1 year, 4 months agoAceVander
1 year, 5 months agoxihjr
1 year, 1 month agoPetercx
1 year, 5 months agoNarobi
1 year, 6 months agoNarobi
1 year, 6 months agoqwes333
1 year, 6 months agoCOYBIG
1 year, 7 months agoJC48554522
1 year, 7 months agoaddcomptia
1 year, 7 months ago