A maritime shipping enterprise is formalizing its cloud security architecture strategy across diverse operational environments. Match each security operational requirement on the left with the corresponding cloud model or security architecture component on the right.
- Enforcing data loss prevention (DLP) and access controls across web applications used by corporate employees without modifying the cloud application code.Cloud Access Security Broker (CASB)
- Provisioning isolated compute and storage infrastructure exclusively dedicated to single-tenant regulatory compliance data within an enterprise-controlled datacenter.Private Cloud Deployment Model
- Deploying virtual instances where the enterprise retains full administrative control over operating system hardening, middleware configuration, and local firewall rules.Infrastructure as a Service (IaaS)
- Participating in a joint logistics tracking platform hosted in the cloud and shared exclusively among authorized trade partners and customs authorities.Community Cloud Deployment Model
Cevap
Enforcing DLP across web applications matches Cloud Access Security Broker (CASB); Dedicated single-tenant infrastructure matches Private Cloud Deployment Model; Managing guest OS hardening and firewall rules on virtual instances matches Infrastructure as a Service (IaaS); Shared tracking platform among authorized partners matches Community Cloud Deployment Model.
Each operational requirement correctly aligns with its architectural counterpart based on the shared responsibility model and deployment boundaries: CASB handles proxy/API security enforcement for cloud applications, Private Cloud guarantees single-tenant isolation, IaaS gives the customer full OS-level management control, and Community Cloud supports shared infrastructure restricted to specified industry partners.
Adım Adım Çözüm
Anahtar Kavram
Cloud Service and Deployment Models
Tahmini Süre:1m 30s