Cisco CyberOps Associate (CBROPS) 200-201Security ConceptsHard

An organization is migrating its on-premises applications to a public cloud environment. The security team is concerned about ensuring that the cloud resources (virtual machines, databases, storage accounts) are configured securely according to industry best practices and compliance requirements before they are deployed. Which security program element is most relevant to this proactive approach?

  1. AVulnerability Management
  2. BIncident Response Planning
  3. CSecurity Architecture and Design
  4. DSecurity Operations Center (SOC)
Show answer & explanation

Correct answer: C. Security Architecture and Design

Security Architecture and Design is a proactive security program element that focuses on integrating security considerations into the initial planning, design, and implementation phases of systems and applications. Ensuring cloud resources are securely configured *before* deployment falls directly under this domain, aiming to build security in from the start.

Why the other options are wrong

  • A. Vulnerability Management involves identifying and remediating weaknesses in *existing* systems, though it can influence design, it's not the primary proactive design element.
  • B. Incident Response Planning deals with reacting to security incidents *after* they occur, not proactive design.
  • D. A Security Operations Center (SOC) is responsible for continuous monitoring and reacting to security events in *deployed* systems, not initial secure design.

Security Architecture & Design

A proactive security program element focused on integrating security considerations into the initial planning, design, and implementation phases of systems, applications, and infrastructure.

  • Aims to build security in from the ground up ('Secure by Design').
  • Involves defining security requirements, choosing appropriate controls, and creating secure blueprints.
  • Reduces the cost and effort of fixing security vulnerabilities later.

Memory trick: Design it Right, Secure it Tight.

More Security Concepts questions