Exam Essentials
Know about cloud security compliance. Know that a company’s security policy is an internal document that outlines its security posture and lists all topics related to security.
Understand that companies must meet certain regulatory compliance statutes. Know that HIPPA compliance is required for the processing and storing of medical data, that PCI-DSS compliance is required for credit card processing, and that there are a range of U.S. federal cloud requirements such as DIACAP, FedRAMP, and FIPS 140-2.
Understand compliance audits. Know that even if a cloud provider is compliant with a requirement, your organization must still meet those requirements on its hosted applications and submit to a compliance audit.
Be able to identify data encryption types and techniques. Know what IPsec is and the components that are included with it. Understand ciphers, the public key infrastructure, encryption types, and common implementations of encryption technologies such as web...