CCSP Domain 1: Cloud Concepts, Architecture, and Design

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/38

flashcard set

Earn XP

Description and Tags

Comprehensive vocabulary flashcards covering Domain 1 of the CCSP curriculum, including cloud definitions, roles, characteristics, models, security concepts, and regulatory frameworks.

Last updated 4:07 PM on 7/29/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

39 Terms

1
New cards

Cloud Computing (NIST Definition)

A model for enabling ubiquitous, convenient, on-demand network access to a shared pool of configurable computing resources (e.g., networks, servers, storage, applications, and services) that can be rapidly provisioned and released with minimal management effort or service provider interaction.

2
New cards

Cloud Service Customer (CSC)

The entity that consumes cloud services.

3
New cards

Cloud Service Provider (CSP)

The entity that provides cloud services.

4
New cards

Cloud Service Partner

An entity that provides support or auxiliary services to a CSP, a CSC, or both.

5
New cards

On-Demand Self-Service

A cloud characteristic where a consumer can unilaterally provision computing capabilities, such as server time and network storage, as needed automatically without requiring human interaction with each service provider.

6
New cards

Broad Network Access

A cloud characteristic where capabilities are available over the network and accessed through standard mechanisms that promote use by thin or thick client platforms.

7
New cards

Resource Pooling

The provider's computing resources are pooled to serve multiple consumers using a multi-tenant model, with different physical and virtual resources dynamically assigned and reassigned according to consumer demand.

8
New cards

Rapid Elasticity

Capabilities can be elastically provisioned and released, in some cases automatically, to scale rapidly outward and inward commensurate with demand.

9
New cards

Measured Service

Cloud systems automatically control and optimize resource use by leveraging a metering capability at some level of abstraction appropriate to the type of service (e.g., storage, processing, bandwidth, and active user accounts).

10
New cards

Cloud Orchestration

The operational process for receiving, fulfilling, managing, monitoring, and metering customer services across all portions of the cloud infrastructure.

11
New cards

Capital Expenditure (CapEx)

Traditional IT cost model involving high up-front investments in physical infrastructure.

12
New cards

Operational Expenditure (OpEx)

The cost model used in cloud computing where expenses are ongoing and variable based on usage.

13
New cards

ISO/IEC 17789 Viewpoints

The four distinct viewpoints of the Cloud Computing Reference Architecture (CCRA): User view, Functional view, Implementation view, and Deployment view.

14
New cards

Communications as a Service (CaaS)

A cloud service category within the ISO/IEC cloud capability types.

15
New cards

Platform as a Service (PaaS)

A cloud service model where the provider provides a platform (including multiple languages, frameworks, and environments) for the consumer to deploy created or acquired applications.

16
New cards

Infrastructure as a Service (IaaS)

A cloud service model providing scale, converged networks, and on-demand self-service capacity for infrastructure resources.

17
New cards

Software as a Service (SaaS)

A cloud service model where the consumer uses the provider’s applications running on a cloud infrastructure.

18
New cards

Private Cloud

Cloud infrastructure owned or leased by a single organization and operated solely for that organization.

19
New cards

Public Cloud

Cloud infrastructure owned by an organization selling cloud services to the general public or a large industry group.

20
New cards

Community Cloud

Cloud infrastructure shared by several organizations and supporting a specific community with shared concerns such as mission, security requirements, and policy.

21
New cards

Hybrid Cloud

A cloud infrastructure composed of two or more distinct cloud infrastructures (private, community, or public) bound together by technology that enables data and application portability.

22
New cards

Multicloud

The use of services from multiple CSPs instead of a single CSP.

23
New cards

CIA Triad

The foundation of security concepts: Confidentiality, Integrity, and Availability.

24
New cards

Cryptography

The practice of disguising information to provide confidentiality, integrity, authenticity, and non-repudiation.

25
New cards

Encryption Key Management

The process of overseeing cryptographic keys through their lifecycle: creation, issuance, revocation, recovery, distribution, and destruction.

26
New cards

Physical Destruction

A media sanitization option involving the physical rendering of hardware as unusable.

27
New cards

Degaussing

A media sanitization option using powerful magnets to disrupt recorded magnetic domains on storage media.

28
New cards

Cryptographic Erasure

A media sanitization option where the encryption keys for data are destroyed, making the stored data unrecoverable.

29
New cards

Zero Trust Network

A security model where no user or system is trusted by default, often involving continuous authentication and inspection of traffic.

30
New cards

Ephemeral Computing

Also known as nonpersistent computing; an approach using virtual systems or containerized applications.

31
New cards

Role-Based Access Control (RBAC)

An access control system where users are mapped to specific roles, and those roles are granted access to applications or resources.

32
New cards

Cloud Secure Data Life Cycle

The six common phases of data: Creation, Storage, Usage, Sharing, Archiving, and Destruction.

33
New cards

Data Replication

The practice of maintaining an up-to-date copy of required data in a different location to address the loss of important assets.

34
New cards

Business Impact Analysis (BIA)

The process of predicting or calculating the consequences of disruption to a business function to set protection needs for CIA.

35
New cards

Cloud Controls Matrix (CCM)

A compilation of cloud-relevant security controls developed by the Cloud Security Alliance (CSA) that can be related to other control frameworks.

36
New cards

STAR Registry

The Security, Trust Assurance and Risk Registry by the CSA, used for self-assessments and third-party assessments of CSPs.

37
New cards

Common Criteria

The ISO/IEC 15408 standard consisting of Protection Profiles (PP), Target of Evaluation (ToE), Security Target (ST), and Evaluation Assurance Levels (EALs).

38
New cards

Agentic AI

Autonomous AI systems that perform work and adapt in pursuit of a specific goal.

39
New cards

Cloud Bursting

A concept allowing public cloud resources to be utilized when a private cloud workload reaches its maximum capacity.