Acronyms
Competitive
True/ False
Cloud Cloud Cloud
Exposure Command
100

CSPM

Cloud Security Posture Management 

100

What is the name for Azure's competitive product?

Defender for Cloud
100

CRC Essentials includes AppSec

False

100

How does ICS help with Cloud Security?

Help comply with cloud configurations best practices and identify misconfigurations in real time throughout development into the cloud

100

How many tiers of Exposure Command are there? and what are their names?

Suface Command

Exposure Command 

Exposure Command Advanced

200

CWPP

Cloud Workload Protection Platform

200

Who did Wiz recently acquire?

Lacework

200

CNAPP combines CASB and CSPM 

FALSE- CNAPP combines CWPP and CSPM capabilities

200

What is a misconfiguration? 

Unintentionally setting up a piece of IT Infrastructure in such a way that security is compromised

200

Does Exposure Command include SOAR?

YES

300

EASM

External Attack Surface Management 

300

What is Tenable's comparable offering to CRC/ Exposure Command? 

Tenable 1

300

InsightCloudSec has capabilities to help with CWPP

TRUE- InsightCloudsec/ CRC can help with CWPP (Cloud Workload Protection Platform) and CSPM  and in tandem, CNAPP

300

What is a VM?

VMs = Virtual Machine. They are a more efficient way of using servers - you can run multiple VIRTUAL servers on a single server

300

How is Exposure Command going to be priced?

based on the average number of assets monitored across your environment

400

CNAPP

Cloud Native Application Protection Platform

400

Where do we loose competitively with Crowdstrikes cloud security?

Crowdstrike provides agent based scanning for runtime with falcon agent (Container Runtime Security) Ex. If a container image is deployed and someone modified it at runtime, we cannot look at that

400

InsightVM can identify where containers are

TRUE- InsightVM scans VMs to identify WHERE containers are

400

What is a container?

Containers are a more efficient way of using Virtual Machines- A key difference in containers is that you don’t typically update them to remediate vulnerabilities because they are intended to be specifically defined

400

What are the 2 main things included in Surface Command

1. Asset Discovery (CASM)

2. External Attack Surface (EASM)

500

CAASM

Cyber Asset Attack Surface Management

500

Name 1 CAASM Competitor

Axonis

JupiterOne

Armis

500

InsightCloudSec can identify misconfigurations in private and public repos

FALSE- InsightCloudSec can identify misconfigurations in ONLY SOME PUBLIC repos

500

What is a Kubernete?

Kubernetes is software that manages docker, it is an enterprise management of container usage

500

Give a 30 second pitch on Exposure Command

Good Job!

M
e
n
u