CS0-003 · Question #55
A company is implementing a vulnerability management program and moving from an on- premises environment to a hybrid IaaS cloud environment. Which of the following implications should be considered on
The correct answer is B. Cloud-specific misconfigurations may not be detected by the current scanners. Cloud-specific misconfigurations are security issues that arise from improper or inadequate configuration of cloud resources, such as storage buckets, databases, virtual machines, or containers. Cloud-specific misconfigurations may not be detected by the current scanners that are
Question
A company is implementing a vulnerability management program and moving from an on- premises environment to a hybrid IaaS cloud environment. Which of the following implications should be considered on the new hybrid environment?
Options
- AThe current scanners should be migrated to the cloud
- BCloud-specific misconfigurations may not be detected by the current scanners
- CExisting vulnerability scanners cannot scan IaaS systems
- DVulnerability scans on cloud environments should be performed from the cloud
How the community answered
(58 responses)- A2% (1)
- B84% (49)
- C9% (5)
- D5% (3)
Explanation
Cloud-specific misconfigurations are security issues that arise from improper or inadequate configuration of cloud resources, such as storage buckets, databases, virtual machines, or containers. Cloud-specific misconfigurations may not be detected by the current scanners that are designed for on-premises environments, as they may not have the visibility or access to the cloud resources or the cloud provider's APIs. Therefore, one of the implications that should be considered on the new hybrid environment is that cloud-specific misconfigurations may not be detected by the current scanners.
Topics
Community Discussion
No community discussion yet for this question.