A healthcare organization is deploying a patient engagement application using virtual machine instances hosted on an Infrastructure as a Service (IaaS) cloud platform. The security architect is defining the operational security responsibilities between the organization and the cloud service provider (CSP). According to the cloud shared responsibility model, which of the following tasks is the sole responsibility of the customer?
- Configuring security baselines and applying security patches to the guest operating systemsCevap
- BUpdating and patching the hypervisor layer that isolates multi-tenant virtual machines
- CTreating all network traffic originating within the cloud provider's internal subnet as implicitly trusted
- DMaintaining physical security controls and environmental systems for the host datacenters
Cevap
Configuring security baselines and applying security patches to the guest operating systems
In Infrastructure as a Service (IaaS) cloud deployments, operational responsibility for everything built above the hypervisor belongs to the customer. This includes configuring guest operating systems, installing OS patches, managing installed applications, and implementing network access control lists on virtual interfaces.
Adım Adım Çözüm
Anahtar Kavram
Cloud Shared Responsibility Model in Infrastructure as a Service (IaaS)