ExamGecko
Question list
Search
Search

List of questions

Search

Question 90 - PCCSE discussion

Report
Export

A customer has serverless functions that are deployed in multiple clouds.

Which serverless cloud provider is covered be ''overly permissive service access'' compliance check?

A.
Alibaba
Answers
A.
Alibaba
B.
GCP
Answers
B.
GCP
C.
AWS
Answers
C.
AWS
D.
Azure
Answers
D.
Azure
Suggested answer: C

Explanation:

The serverless cloud provider covered by the ''overly permissive service access'' compliance check is AWS (Amazon Web Services). AWS Lambda, which is the serverless computing platform provided by AWS, may have functions that are assigned more permissions than they require to perform their operations, leading to security risks.

In the context of CSPM tools, such as Prisma Cloud, checks for overly permissive service access would typically include examining the policies attached to AWS Lambda functions to ensure that they adhere to the principle of least privilege. Such checks help identify and rectify overly broad permissions that could potentially be exploited by attackers.

The reference for this can be found in AWS best practices for Lambda security, which emphasize the importance of granting minimal privileges necessary for the Lambda function to perform its tasks, thereby reducing the potential attack surface.

asked 23/09/2024
Deepak PSK
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first