Build and Implement Physica and Logical Infrastructure
Operate and Maintain Physical and Logical Infrastructure
Implement Operational Controls and Standards
Manage Communications with Relevant Parties
Manage Security Operations
100

Ensure underlying physical hardware runs patched firmware with secure boot enabled to prevent unauthorized firmware modifications.

BIOS

100

Using Remote Desktop Protocol (RDP) for cloud infrastructure requires strict access controls to which port.

3389

100

Mandates automated risk assessments before any infrastructure or application change is deployed. Ensure tools evaluate impacts on network segmentation, encryption, and authentication.

Security Impact Analysis (SIA)

100

Educate clients and set clear risk expectations. Share recurring, automated security reports that outline misconfigurations, IAM violations, and compliance shifts.

Proactive Security Posture Management (CSPM)

100

Protects cloud environments by centralizing 24/7 monitoring, threat detection, and incident response.

Security Operations Center (SOC)

200

What type of hypervisor runs on bare-metal

Type 1

200

An implemented solution to hide systems from the broader network and protect against lateral movement attacks.

Zero Trust Network Access (ZTNA)

200

Leverage multi-AZ/multi-region deployments, load balancers, and automated failover architectures to eliminate single points of failure.

High Availability & Redundancy

200

Utilize native cloud compliance tools to generate real-time, audit-ready reports instead of scrambling for manual data during an audit.

Automate Evidence Collection

200

Continuous observation of all network traffic flowing in, out, and across cloud workloads.

Real-time Traffic Visibility

300

What type of hypervisor is preferred by attackers

Type 2

300

An access mechanism which forms the primary control plane for operating, maintaining, and securing cloud infrastructure.

Console-based

300

In cloud security it requires embedding feedback loops and automated governance into your daily operations.

Continual Service Improvement (CSI)

300

Focus on business risk, financial exposure, and overall compliance.

Executives & Leadership

300

Firewalls can trigger dynamic rule changes, such as isolating a compromised container or restricting access to specific cloud databases, without waiting for manual administrator intervention.

Automated Playbooks

400

A physical, tamper-resistant device dedicated to generating, storing, and managing cryptographic keys.

Hardware Security Module (HSM)

400

Dividing a single physical network into multiple, isolated logical networks using software.

Virtual Local Area Networks (VLANs)

400

Tools to automatically detect baseline drifts, misconfigurations, and excessive permissions, categorizing them as active problems rather than isolated incidents.

Cloud Security Posture Management (CSPM)

400

Prevent silos by holding joint threat modeling or incident response "tabletop" exercises that involve Legal, PR, Security Operations, and IT teams.

Cross-Functional Collaboration

400

Integrating IPS data with cloud monitoring ensures you maintain continuous visibility into both your cloud infrastructure health and active security operations.

Unified Observability

500

A posture which means embedding guardrails, least privilege, and automated compliance directly into your architecture before any workloads are deployed.

Secure by Default

500

In a cloud environment it protects your infrastructure against DNS spoofing, and cache poisoning.

Domain Name System Security Extensions (DNSSEC)

500

Implement operational controls by establishing immutable Infrastructure as Code (IaC) baselines. Enforce standard policies by mapping configurations to frameworks.

Configuration Management

500

Keep a detailed, immutable log of security misconfigurations, remediation efforts, exceptions, and third-party risk assessments to prove "compliance in depth".

Document Everything

500

Supports cloud security by aggregating logs from diverse environments into a centralized platform.

SIEM (Security Information and Event Management)

M
e
n
u