nerdexam
Cisco

350-701 · Question #621

Which entity is responsible for encrypting data in transit using an IaaS model versus a SaaS model?

The correct answer is D. Cloud Service Customer for IaaS and Cloud Service Provider for SaaS. In the IaaS model, the Cloud Service Customer is responsible for encrypting data in transit, whereas in the SaaS model, the Cloud Service Provider is typically responsible for this encryption.

Submitted by marco_it· Mar 30, 2026

Question

Which entity is responsible for encrypting data in transit using an IaaS model versus a SaaS model?

Options

  • ACloud Application Developer for IaaS and Cloud SLA Manager for SaaS
  • BCloud SLA Manager for IaaS and Cloud Application Developer for SaaS
  • CCloud Service Provider for IaaS and Cloud Service Customer for SaaS
  • DCloud Service Customer for IaaS and Cloud Service Provider for SaaS

How the community answered

(23 responses)
  • A
    4% (1)
  • B
    9% (2)
  • D
    87% (20)

Why each option

In the IaaS model, the Cloud Service Customer is responsible for encrypting data in transit, whereas in the SaaS model, the Cloud Service Provider is typically responsible for this encryption.

ACloud Application Developer for IaaS and Cloud SLA Manager for SaaS

Cloud Application Developer and Cloud SLA Manager are not the primary entities responsible for shared responsibility model aspects of data encryption in transit in IaaS/SaaS scenarios.

BCloud SLA Manager for IaaS and Cloud Application Developer for SaaS

Cloud Application Developer and Cloud SLA Manager are not the primary entities responsible for shared responsibility model aspects of data encryption in transit in IaaS/SaaS scenarios.

CCloud Service Provider for IaaS and Cloud Service Customer for SaaS

This option incorrectly assigns the responsibility; the Cloud Service Provider in IaaS only provides the underlying infrastructure, leaving data encryption to the customer, and the SaaS provider is responsible for the application and its data encryption.

DCloud Service Customer for IaaS and Cloud Service Provider for SaaSCorrect

Under the IaaS model, the customer manages the operating systems, applications, and data, making them responsible for implementing encryption for data in transit; conversely, with SaaS, the provider manages the entire application stack, including data handling, thus making the Cloud Service Provider responsible for encrypting data in transit.

Concept tested: Cloud shared responsibility (IaaS vs SaaS)

Source: https://learn.microsoft.com/en-us/azure/security/fundamentals/shared-responsibility

Topics

#Shared responsibility model#IaaS#SaaS#Data in transit encryption

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice