An enterprise is migrating its customer database to a Platform as a Service (PaaS) cloud environment. During the architectural design phase, the security team must document operational duties in accordance with the cloud shared responsibility model. Which of the following responsibilities remains strictly with the customer organization in a PaaS deployment?
- Classifying stored data sensitivity and configuring user access control policiesCevap
- BApplying software updates and kernel patches to the underlying server operating system
- CEstablishing physical perimeter security and hardware maintenance inside the data center
- DConfiguring network perimeter firewalls around the physical cloud infrastructure hosts
Cevap
Classifying stored data sensitivity and configuring user access control policies remains the sole responsibility of the customer organization in a Platform as a Service (PaaS) model.
Under the cloud shared responsibility model for Platform as a Service (PaaS), the Cloud Service Provider (CSP) manages the physical infrastructure, hypervisor, operating system, and database runtime environment. The customer is strictly responsible for managing their own data, classifying data sensitivity, and enforcing identity and access management policies for users interacting with the service.
Adım Adım Çözüm
Anahtar Kavram
Cloud Shared Responsibility Model in PaaS
Tahmini Süre:1m 30s