Microsoft Cybersecurity Architect (SC-100)Evaluate Governance Risk Compliance (GRC) technical strategies and security operations strategiesMedium
A multinational financial services organization operates in numerous jurisdictions, each with distinct data residency, privacy, and industry-specific compliance requirements (e.g., GDPR, CCPA, PCI DSS, SOX). The cybersecurity architect needs to implement a technical strategy that can consistently apply and enforce these varied regulatory controls across its global cloud infrastructure while providing a centralized view of compliance posture. Which strategy would BEST address these complex requirements?
- ADeploying a global Security Information and Event Management (SIEM) system with custom correlation rules.
- BEstablishing a federated Privileged Access Management (PAM) system for all critical cloud resources.
- CImplementing a unified Cloud Security Posture Management (CSPM) solution with policy-as-code capabilities.
- DUtilizing a Distributed Ledger Technology (DLT) for immutable audit trails across regions.
Show answer & explanationAnswer & explanation
Correct answer: C. Implementing a unified Cloud Security Posture Management (CSPM) solution with policy-as-code capabilities.
A unified CSPM solution with policy-as-code allows for the centralized definition and automated enforcement of security policies, including compliance with various regulations, across diverse cloud environments. This provides a consistent approach and a centralized view of compliance.
Why the other options are wrong
- A. While SIEM collects and correlates security events, it's primarily for incident detection and response, not for defining and enforcing compliance policies across the cloud infrastructure itself.
- B. PAM focuses specifically on managing privileged accounts; while important for security and compliance, it doesn't address the broader need for consistent regulatory control enforcement across all cloud resources and regulations.
- D. DLT provides immutable records, which is useful for audit trails, but it does not directly define, enforce, or provide a centralized view of compliance posture across cloud environments.
Cloud Security Posture Management (CSPM)
CSPM continuously monitors cloud environments for misconfigurations, compliance violations, and security risks, often leveraging policy-as-code for automated enforcement.
- Identifies and remediates misconfigurations.
- Ensures compliance with regulatory standards.
- Provides continuous visibility into cloud security posture.
Memory trick: CSPM is the 'Cloud Sheriff' enforcing 'Rules' everywhere.