CompTIA Cloud+ (CV0-004)SecurityMedium
A global enterprise uses a multi-cloud strategy and needs to enforce a consistent security posture across all its cloud environments (AWS, Azure, GCP). The security team requires continuous monitoring for misconfigurations, compliance violations, and security risks, along with automated remediation where possible. Which type of cloud security solution should they implement?
- ACloud Security Posture Management (CSPM)
- BIntrusion Detection/Prevention System (IDPS)
- CSecurity Information and Event Management (SIEM)
- DCloud Access Security Broker (CASB)
Show answer & explanationAnswer & explanation
Correct answer: A. Cloud Security Posture Management (CSPM)
Cloud Security Posture Management (CSPM) tools are designed to continuously monitor cloud environments for misconfigurations, compliance deviations, and security risks. They often provide automated remediation capabilities and are effective across multi-cloud deployments.
Why the other options are wrong
- B. An IDPS focuses on detecting and preventing network-based attacks and malicious activities in real-time, rather than continuous monitoring of cloud configurations and compliance.
- C. A SIEM aggregates and analyzes security logs and events from various sources for threat detection and compliance reporting, but it doesn't primarily focus on proactive posture management and misconfiguration detection.
- D. A CASB focuses on securing SaaS applications and protecting data in the cloud, often providing visibility and control over sanctioned/unsanctioned apps, but not primarily on cloud infrastructure posture.
Cloud Security Posture Management (CSPM)
Tools that continuously monitor cloud environments for misconfigurations, compliance violations, and security risks, often with automated remediation.
- Provides visibility into security posture.
- Helps ensure compliance with regulations.
- Often supports multi-cloud environments.
Memory trick: CSPM manages your cloud's security shape.