Cloud · Flashcard

AWS secures the cloud itself. Which item does that cover?

  • AThe physical data centres and the hypervisor under the instances
  • BThe IAM users, roles and policies that exist in your account
  • CThe guest operating system and the packages on your instances
  • DThe security group rules that decide which ports are reachable

Why this is the answer

Security 'of' the cloud is everything AWS operates and you cannot touch: facilities, hardware, the hypervisor and the managed service software. Everything you create inside the account — identities, guest operating systems, network rules, data — is security 'in' the cloud and stays yours, which is why a misconfigured security group is never an AWS failure.

Official docs
Study in Gnoseed →