ExamGecko
Question list
Search
Search

List of questions

Search

Question 224 - PCCSE discussion

Report
Export

Which serverless cloud provider is covered by the 'overly permissive service access' compliance check?

A.
Alibaba
Answers
A.
Alibaba
B.
Azure
Answers
B.
Azure
C.
Amazon Web Services (AWS)
Answers
C.
Amazon Web Services (AWS)
D.
Google Cloud Platform (GCP)
Answers
D.
Google Cloud Platform (GCP)
Suggested answer: C

Explanation:

The 'overly permissive service access' compliance check is specifically designed to evaluate and ensure that cloud services are not granted more permissions than necessary, which could lead to potential security risks. Among the listed options, Amazon Web Services (AWS) is known for its extensive service offerings and the complexity of its Identity and Access Management (IAM) configurations. Prisma Cloud, a comprehensive cloud security platform by Palo Alto Networks, provides extensive support for AWS, including checks for overly permissive service access. This ensures that AWS environments adhere to the principle of least privilege, reducing the attack surface by limiting access to the minimum necessary to perform required tasks. Prisma Cloud's capabilities in AWS environments are detailed in various resources, including documentation and guides provided by Palo Alto Networks, which highlight its effectiveness in identifying and mitigating risks associated with excessive permissions in AWS services.

asked 23/09/2024
Tom Bodett
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first