WGU D320 Managing Cloud Security Version (JYO2) –
Questions With Correct Solutions
A process that assesses and identifies the potential effects of disruptions to a
business operation. Right Ans - Business Impact Analysis (BIA)
A component or system that, if it fails, will cause the entire system to fail.
Right Ans - SPOF
Risk assessment that uses specific numerical values Right Ans -
Quantitative
Risk assessment that uses non-numerical categories that are relative in
nature, such as high, medium, and low. Right Ans - Qualitative
level, amount, or type of risk that the organization finds acceptable Right
Ans - Risk appetite
The remaining risk that exists after countermeasures have been applied.
Right Ans - Residual risk
Service model where cloud customer has the most responsibility and
authority. Cloud provider is only liable for the underlying hardware. Right
Ans - IaaS
Service model where cloud customer loses more control because the cloud
provider is responsible for installing, maintaining, and administering the OS
as well as underlying hardware. Right Ans - PaaS
Service model where cloud customer loses all control of the environment.
Cloud provider is responsible for all of the underlying hardware and software.
Right Ans - SaaS
A method of processing data in the cloud while it remains encrypted. Right
Ans - Homomorphic encryption
A security strategy that involves implementing multiple overlapping layers of
security measures to protect an environment. Right Ans - Defense in depth
,Organization that has collected or created the data. Right Ans - Data owner
Person or entity that is tasked with the daily maintenance and administration
of the data. Right Ans - Data Custodian
Any org or person who manipulates, stores, or moves the data on behalf of the
data owner Right Ans - Data Processor
The process of creating an inventory or conducting e-discovery to identify and
locate data. Right Ans - Data discovery
A data discovery method that is aided by labels created by the data owner.
Right Ans - Label-based discovery
A data discovery method that involves discovering data using metadata traits
and characteristics. Right Ans - Metadata-based discovery
Refers to finding information or resources based on their characteristics,
attributes, or content rather than relying on predefined keywords or
categories. Right Ans - Content-based discovery
Data that is organized and formatted in a way that is easily searchable and can
be processed by computers. Right Ans - Structured data
qualitative data; natural-language text; incorporate media (audio, video,
images); contains JSON, XML, binary objects (images encoded as text strings);
important for data analytic strategies; noSQL Right Ans - Unstructured data
A set of controls and technologies used to protect certain types of assets, such
as intellectual property or sensitive information. Right Ans - IRM
(Information Rights Management)
Legal protection for expressions of ideas, such as literary, artistic, or musical
works. Right Ans - Copyright
Legislation that provides additional protections for creative works in digital
formats. Right Ans - DMCA (Digital Millennium Copyright Act)
, Legal protection for specific words, phrases, symbols, or designs that
distinguish a product or service. Right Ans - Trademarks
A grant of exclusivity that gives the holder the right to produce, sell, and
import an invention. Right Ans - Patent
A framework for secure communication using cryptographic techniques, such
as digital certificates and public-private key pairs. Right Ans - PKI (Public
Key Infrastructure)
A method of storing data as files and folders, similar to how data is organized
on a traditional file system. Right Ans - File-based storage
Allocates a large chunk of storage for access as a disk volume managed by the
operating system. Right Ans - Block storage
Stores files as individual objects managed by the cloud service provider.
Right Ans - Object storage
A system that caches commonly requested content in geographically
distributed servers to improve performance and reduce latency. Right Ans
- CDN (Content Delivery Network)
A form of encryption where the encryption key is stored on the same data
store. Right Ans - Transparent encryption
The process of replacing data with random characters to make it less
predictable and harder to decipher. Right Ans - Randomization
The process of creating a unique fixed-size string, called a hash, from an input
data using a cryptographic function. Right Ans - Hashing
A technique that involves using different entries from the same dataset to
represent data, making it harder to identify specific data points. Right Ans -
Shuffling
A method of hiding sensitive data by replacing it with useless characters or
symbols. Right Ans - Masking
Questions With Correct Solutions
A process that assesses and identifies the potential effects of disruptions to a
business operation. Right Ans - Business Impact Analysis (BIA)
A component or system that, if it fails, will cause the entire system to fail.
Right Ans - SPOF
Risk assessment that uses specific numerical values Right Ans -
Quantitative
Risk assessment that uses non-numerical categories that are relative in
nature, such as high, medium, and low. Right Ans - Qualitative
level, amount, or type of risk that the organization finds acceptable Right
Ans - Risk appetite
The remaining risk that exists after countermeasures have been applied.
Right Ans - Residual risk
Service model where cloud customer has the most responsibility and
authority. Cloud provider is only liable for the underlying hardware. Right
Ans - IaaS
Service model where cloud customer loses more control because the cloud
provider is responsible for installing, maintaining, and administering the OS
as well as underlying hardware. Right Ans - PaaS
Service model where cloud customer loses all control of the environment.
Cloud provider is responsible for all of the underlying hardware and software.
Right Ans - SaaS
A method of processing data in the cloud while it remains encrypted. Right
Ans - Homomorphic encryption
A security strategy that involves implementing multiple overlapping layers of
security measures to protect an environment. Right Ans - Defense in depth
,Organization that has collected or created the data. Right Ans - Data owner
Person or entity that is tasked with the daily maintenance and administration
of the data. Right Ans - Data Custodian
Any org or person who manipulates, stores, or moves the data on behalf of the
data owner Right Ans - Data Processor
The process of creating an inventory or conducting e-discovery to identify and
locate data. Right Ans - Data discovery
A data discovery method that is aided by labels created by the data owner.
Right Ans - Label-based discovery
A data discovery method that involves discovering data using metadata traits
and characteristics. Right Ans - Metadata-based discovery
Refers to finding information or resources based on their characteristics,
attributes, or content rather than relying on predefined keywords or
categories. Right Ans - Content-based discovery
Data that is organized and formatted in a way that is easily searchable and can
be processed by computers. Right Ans - Structured data
qualitative data; natural-language text; incorporate media (audio, video,
images); contains JSON, XML, binary objects (images encoded as text strings);
important for data analytic strategies; noSQL Right Ans - Unstructured data
A set of controls and technologies used to protect certain types of assets, such
as intellectual property or sensitive information. Right Ans - IRM
(Information Rights Management)
Legal protection for expressions of ideas, such as literary, artistic, or musical
works. Right Ans - Copyright
Legislation that provides additional protections for creative works in digital
formats. Right Ans - DMCA (Digital Millennium Copyright Act)
, Legal protection for specific words, phrases, symbols, or designs that
distinguish a product or service. Right Ans - Trademarks
A grant of exclusivity that gives the holder the right to produce, sell, and
import an invention. Right Ans - Patent
A framework for secure communication using cryptographic techniques, such
as digital certificates and public-private key pairs. Right Ans - PKI (Public
Key Infrastructure)
A method of storing data as files and folders, similar to how data is organized
on a traditional file system. Right Ans - File-based storage
Allocates a large chunk of storage for access as a disk volume managed by the
operating system. Right Ans - Block storage
Stores files as individual objects managed by the cloud service provider.
Right Ans - Object storage
A system that caches commonly requested content in geographically
distributed servers to improve performance and reduce latency. Right Ans
- CDN (Content Delivery Network)
A form of encryption where the encryption key is stored on the same data
store. Right Ans - Transparent encryption
The process of replacing data with random characters to make it less
predictable and harder to decipher. Right Ans - Randomization
The process of creating a unique fixed-size string, called a hash, from an input
data using a cryptographic function. Right Ans - Hashing
A technique that involves using different entries from the same dataset to
represent data, making it harder to identify specific data points. Right Ans -
Shuffling
A method of hiding sensitive data by replacing it with useless characters or
symbols. Right Ans - Masking