True/False
True or False? SaaS, PaaS, and IaaS are SPI models. True
ANS: SaaS, PaaS, and IaaS are most common service models of cloud computing.
2. True or False? The risk-based approach is recommended for organizations considering the cloud.
3. True or False? The data and resources asset(s) is supported by the cloud.
4. True or False? A customer hosts its own application and data, while hosting a part of the functionality in the cloud. This service model is referred to as SaaS.
5. True or False? A customer’s first step in evaluating its risks while considering a cloud deployment would be to select the data or function that’s going to be hosted in the cloud.
Multiple Choice
1. In the criteria to evaluate a potential cloud service model or provider, a customer should consider:
A. Comfort level for moving to the cloud
B. Level of control at each SPI cloud model
C. Importance of assets to move to the cloud
D. Type of assets to move to the cloud
E. All of the above
2. Which attack type can affect an IaaS environment?
A. Cross-site-request-forgery attacks
B. Side-channel attacks (VM-to-VM)
C. Token stealing
D. Canonicalization attacks
E. All of the above
3. What should a cloud customer prefer for DR?
A. High RTO, low cost
B. Low RTO, high cost
C. Low RTO, low cost, all data
D. Backup critical data with a low RTO and cost
E. All of the above
4. Which deployment model is suitable for a customer that needs the flexibility and resources of a public cloud, but needs to secure and define its networks?
A. Hybrid
B. Private
C. Secured
D. Virtual Private
E. All of the above
5. What does an SLA cover?
A. Service levels
B. Security
C. Governance
D. Compliance
E. All of the above