Cloud Security (WGU) NEW UPDATED 100% VERIFIED
CORRECT NEW!!
Business Impact Analysis (BIA)
A process that assesses and iden fies the poten al effects of disrup ons to a business
opera on.
SPOF
A component or system that, if it fails, will cause the en re system to fail.
Quan ta ve
Risk assessment that uses specific numerical values
Qualita ve
Risk assessment that uses non-numerical categories that are rela ve in nature, such as high,
medium, and low.
Risk appe te
level, amount, or type of risk that the organiza on finds acceptable
Residual risk
The remaining risk that exists a,er countermeasures have been applied.
IaaS
Service model where cloud customer has the most responsibility and authority. Cloud provider
is only liable for the underlying hardware.
PaaS
Service model where cloud customer loses more control because the cloud provider is
responsible for installing, maintaining, and administering the OS as well as underlying hardware.
SaaS
Service model where cloud customer loses all control of the environment. Cloud provider is
responsible for all of the underlying hardware and so,ware.
,Homomorphic encryp on
A method of processing data in the cloud while it remains encrypted.
Defense in depth
A security strategy that involves implemen ng mul ple overlapping layers of security measures
to protect an environment.
Data owner
Organiza on that has collected or created the data.
Data Custodian
Person or en ty that is tasked with the daily maintenance and administra on of the data.
Data Processor
Any org or person who manipulates, stores, or moves the data on behalf of the data owner
Data discovery
The process of crea ng an inventory or conduc ng e-discovery to iden fy and locate data.
Label-based discovery
A data discovery method that is aided by labels created by the data owner.
Metadata-based discovery
A data discovery method that involves discovering data using metadata traits and
characteris cs.
Content-based discovery
Refers to finding informa on or resources based on their characteris cs, a2ributes, or content
rather than relying on predefined keywords or categories.
Structured data
Data that is organized and forma2ed in a way that is easily searchable and can be processed by
computers.
Unstructured data
qualita ve data; natural-language text; incorporate media (audio, video, images); contains
JSON, XML, binary objects (images encoded as text strings); important for data analy c
strategies; noSQL
, IRM (Informa on Rights Management)
A set of controls and technologies used to protect certain types of assets, such as intellectual
property or sensi ve informa on.
Copyright
Legal protec on for expressions of ideas, such as literary, ar s c, or musical works.
DMCA (Digital Millennium Copyright Act)
Legisla on that provides addi onal protec ons for crea ve works in digital formats.
Trademarks
Legal protec on for specific words, phrases, symbols, or designs that dis nguish a product or
service.
Patent
A grant of exclusivity that gives the holder the right to produce, sell, and import an inven on.
PKI (Public Key Infrastructure)
A framework for secure communica on using cryptographic techniques, such as digital
cer ficates and public-private key pairs.
File-based storage
A method of storing data as files and folders, similar to how data is organized on a tradi onal
file system.
Block storage
Allocates a large chunk of storage for access as a disk volume managed by the opera ng system.
Object storage
Stores files as individual objects managed by the cloud service provider.
CDN (Content Delivery Network)
A system that caches commonly requested content in geographically distributed servers to
improve performance and reduce latency.
Transparent encryp on
A form of encryp on where the encryp on key is stored on the same data store.