1Z0-1104-25 Question 8
Select 2Your healthcare organization is migrating a patient management system to Oracle Cloud Infrastructure (OCI). As part of the shared security responsibility model, which responsibilities specifically fall under your organization� role to ensure the environment remains protected?
- A
Setting up and maintaining physical security controls at Oracle� data centers
- B
Controlling and managing IAM policies for users and groups in your OCI tenancy
- C
Deploying security patches to the underlying hypervisor that hosts your instances
- D
Implementing and maintaining OS-level patches and configurations within your compute instances
Show answer and explanation
Correct answers: B, D
Explanation
In OCI� shared security responsibility model, Oracle secures the underlying infrastructure�including physical data centers, hardware, and the hypervisor. Customers are responsible for securing their applications, data, OS patches, and IAM policies. For details, refer to Oracle documentation on the Shared Security Responsibility Model and best practices for infrastructure security in OCI.
- A. Incorrect.
Option 1: Incorrect. Physical security of OCI data centers is Oracle� responsibility. They manage locks, surveillance, and restricted access at the data center level.
- B. Correct.
Option 2: Correct. You are responsible for configuring and enforcing Identity and Access Management (IAM) policies for your resources, ensuring correct privilege assignments and secure authentication methods.
- C. Incorrect.
Option 3: Incorrect. Oracle is responsible for applying patches to the underlying hypervisor and virtualization layers. As a customer, you only manage responsibilities starting at the operating system level and above (for IaaS).
- D. Correct.
Option 4: Correct. Managing and regularly updating OS patches, antivirus software, and other configurations within your instances is part of the customer� responsibilities in OCI.