AWS Certified Cloud Practitioner (CLF-C02)Cloud ConceptsMedium
During a CAF assessment, a security team defines how to structure the selection and implementation of controls for identity and access management, threat detection, infrastructure protection, and incident response as the company moves to AWS. Which CAF perspective is the security team addressing?
- AGovernance Perspective
- BSecurity Perspective
- CPeople Perspective
- DOperations Perspective
Show answer & explanationAnswer & explanation
Correct answer: B. Security Perspective
The Security Perspective of AWS CAF helps structure the selection and implementation of controls across capabilities such as identity and access management, detective controls, infrastructure security, data protection, and incident response.
Why the other options are wrong
- A. Governance Perspective focuses on managing risk portfolios and skills, not specific technical security controls.
- C. People Perspective focuses on organizational change management and staff skills, not security controls.
- D. Operations Perspective focuses on operating and monitoring workloads, not designing security controls.
CAF Security Perspective
An AWS CAF perspective that helps organizations structure the selection and implementation of security controls across the cloud environment to meet business and regulatory requirements.
- Covers IAM, detective controls, infrastructure protection, data protection, incident response
- Aligns security requirements with business objectives
- One of six CAF perspectives
Memory trick: Security = locking down identity, detection, and response.