C838 Exam Questions with 100% Correct
Answers.
Infrastructure as a Service (IaaS)
Allows the customer to install all software, including operating systems on hardware housed and
connected by the cloud vendor
Platform as a Service (PaaS)
Contains everything included in IaaS, with the addition of OSs. This model is especially useful
for software development operations (DevOps).
Software as a Service (SaaS)
Includes everything listed in the IaaS & PaaS models, with the addition of software programs.
Encryption
Offers a degree of assurance that nobody without authorization will be able to access your data in
a meaningful way
Cloud Service Provider (CSP)
Provides administrative assistance for the customer and the customer's data and processing
needs. Examples include AWS, Rack space, and Microsoft's Azure
Virtualization
A process of creating a virtual version of something, including virtual computer hardware
platforms, operating systems, storage devices, and computer network resources.
Vendor lock-in
Occurs in a situation where a customer may be unable to leave, migrate, or transfer to an
alternative provider due to technical or non-technical constraints.
Cloud Provider
, A service provider that offers customer storage or software solutions available via a public
network, usually the Internet
Cloud portability
The ability to move applications and associated data between one cloud provider and another, or
between legacy and cloud environments.
Cloud Access Security Broker (CASB)
A third-party entity offering independent identity and access management (IAM) services to
CSPs (Cloud Service Provider) and cloud customers, often as an intermediary.
CCSP
Certified Cloud Security Professional
ISC2
International Information Systems Security Certification Consortium. Global, non-profit
organization.
cloud bursting
when a company uses its own computing infrastructure for normal usage and accesses the cloud
when it needs to scale for peak load requirements, ensuring that a sudden spike in usage does not
result in poor performance or system crashes. (E.g. crisis situation, heavy holiday shopping)
Mitigation
The process of taking steps to decrease the likelihood or the impact of the risk
Risk Transference
A risk management strategy that involves the contractual shifting of a risk from one organization
to another
Layered Defense
The practice of having multiple overlapping means of securing the environment with a variety of
methods
Answers.
Infrastructure as a Service (IaaS)
Allows the customer to install all software, including operating systems on hardware housed and
connected by the cloud vendor
Platform as a Service (PaaS)
Contains everything included in IaaS, with the addition of OSs. This model is especially useful
for software development operations (DevOps).
Software as a Service (SaaS)
Includes everything listed in the IaaS & PaaS models, with the addition of software programs.
Encryption
Offers a degree of assurance that nobody without authorization will be able to access your data in
a meaningful way
Cloud Service Provider (CSP)
Provides administrative assistance for the customer and the customer's data and processing
needs. Examples include AWS, Rack space, and Microsoft's Azure
Virtualization
A process of creating a virtual version of something, including virtual computer hardware
platforms, operating systems, storage devices, and computer network resources.
Vendor lock-in
Occurs in a situation where a customer may be unable to leave, migrate, or transfer to an
alternative provider due to technical or non-technical constraints.
Cloud Provider
, A service provider that offers customer storage or software solutions available via a public
network, usually the Internet
Cloud portability
The ability to move applications and associated data between one cloud provider and another, or
between legacy and cloud environments.
Cloud Access Security Broker (CASB)
A third-party entity offering independent identity and access management (IAM) services to
CSPs (Cloud Service Provider) and cloud customers, often as an intermediary.
CCSP
Certified Cloud Security Professional
ISC2
International Information Systems Security Certification Consortium. Global, non-profit
organization.
cloud bursting
when a company uses its own computing infrastructure for normal usage and accesses the cloud
when it needs to scale for peak load requirements, ensuring that a sudden spike in usage does not
result in poor performance or system crashes. (E.g. crisis situation, heavy holiday shopping)
Mitigation
The process of taking steps to decrease the likelihood or the impact of the risk
Risk Transference
A risk management strategy that involves the contractual shifting of a risk from one organization
to another
Layered Defense
The practice of having multiple overlapping means of securing the environment with a variety of
methods