Cloud Adoption & Vendor Challenges
Shadow IT & Cloud Governance
Disaster Recovery: Warm Standby
Disaster Recovery: Warm Sites
DR Plan Testing & Review
DDoS & Incident First Responders
100

Relying heavily on one CSP risks this strategic limitation.

What is vendor lock-in?

100

This governance practice curbs unauthorized cloud usage by employees.

What is Cloud Governance?

100

This DR method runs a scaled-down version of production, quickly scaled up in disaster.

What is Warm Standby?

100

This site has partial redundancy and daily/weekly data sync. 

What is a Warm Site?

100

This type of review involves DR plan owners checking for missing elements.

What is Plan Review?

100

The first team members to respond during a cloud incident.

Who are Incident Handlers?

200

The AWS framework guiding adoption strategy and value is called this.

What is the Cloud Adoption Framework (CAF)?

200

Cloud Governance combats this problem where employees use unapproved cloud apps.

What is Shadow IT?

200

Warm Standby balances cost and recovery by keeping this always running.

What is a smaller replica environment?

200

Warm sites typically require this before full recovery.

What is scaling up hardware/resources?

200

Testing the DR plan via team discussion, not execution, is this.

What is Tabletop Exercise?

200

Incident Handlers are also called this in the IR lifecycle.

Who are First Responders?

300

Governance requires balancing IT adoption with the interests of these.

Who are corporate stakeholders?

300

Implementing governance reduces risks from this type of fragmented control.

What is unwarranted usage and breaches?

300

Warm Standby can meet these aggressive time objectives.

What are RTO and RPO within minutes?

300

Failover to warm sites generally occurs in this timeframe.

What is hours to days?

300

When DR plan owners and team validate consistency, it’s this activity.

What is DR Plan Validation (Review Testing)?

300

These responders defend against large-scale DDoS events.

Who are Incident Handlers / SOC first line defenders?

400

Vendor lock-in most directly challenges this cloud governance principle.

What is portability/interoperability?

400

Establishing policies, monitoring, and education are ways to prevent this.

What is Shadow IT?

400

Warm Standby is best for this type of business function.

What are core business-critical functions?

400

Warm sites keep this type of equipment ready.

What is partially redundant equipment?

400

Identifying gaps in DR plans through formal evaluation is this.

What is Gap Analysis in DR Testing?

400

First Responders act in this phase of incident handling.

What is Detection and Initial Response?

500

Shadow IT, lock-in, and poor adoption planning are examples of these.

What are governance and adoption risks?

500

Shadow IT directly undermines this principle of governance.

What is alignment between business vision and IT?

500

Warm Standby is less expensive than this but faster than Pilot Light.

What is Hot Site (full replication)?

500

Warm sites are slower than hot sites but faster than this.

What is Cold Sites?

500

DR plan testing ensures this primary business objective.

What is Business Continuity?

500

True or False: Incident Handlers only work after containment.

What is False (they respond immediately at detection)?

M
e
n
u