Logical Design
The logical design is where cloud infrastructure begins to differentiate from a traditional data center. Because of that, you can expect the CCSP exam to place particular emphasis on this part of the design process. Key components of secure logical design include the following:
- Tenant partitioning or isolation
- Limited and secure remote access
- Cloud monitoring
- Patching and updating systems
To help us understand the logical components of a secure data center, it’s important to familiarize ourselves with the concept of the Zero-Trust architecture.
NIST 800-207 defines zero trust as a collection of concepts, ideas, and component relationships (architectures) designed to eliminate the uncertainty in and enforce accurate access decisions in information systems and services.
In simpler terms, zero trust is a security model built on the idea that no entity within or outside an organization should be trusted by default. Understanding the...