Covering the enterprise end to end
What is a principle of COBIT
Redundant Circuits, HVAC, Clean Power
What are Data Center Controls?
Amazon Web Services
What is the Public Cloud?
WAP
What is a wireless access point?
Payroll processors, medical claims processors, data center companies, software as a service companies
What is a SOC 1 Report?
EDM
What is evaluate, direct, and monitor?
Least Privilege Model, use of open standards, enforce input controls
What are software development life cycle controls?
Private on prem + private cloud + 3rd party public cloud
What is the hybrid cloud?
SAN
What is a storage area network?
Internal controls related to privacy, security, availability, processing integrity, confidentiality
What is a SOC 2 report?
BAI
What is build, acquire, implement?
No changes in PROD
What is Change Control?
Operated by one company
What is the private cloud?
DMZ
What is the demilitarized zone?
Marketing Document
What is a SOC 3 Report?
DSS
What is deliver, service and support?
Recovery point objective, recovery time objective
What are back and recovery controls?
Organizations retain control over sensitive data
What is the Hybrid Cloud?
OSI
What is Open Systems Interconnection?
3
What are the number of SOC reports?
Identify and classify problems
What is Management Domain DSS 03?
Biometric devices, physical security, unique credentials
What are access controls?
Based on standard cloud computing
What is the Public cloud?
IPS
Standard Operating Controls
What is SOC?