1Z0-1104-25 Question 9
Select 2Your organization is migrating a mission-critical workload to an OCI Compute instance. The leadership team is uncertain about who is responsible for operating system patching, data encryption at rest, security of the physical infrastructure, and user access management. According to the OCI Shared Security Responsibility model, which two tasks are typically the customer� responsibility in this scenario?
- A
Patching the operating system on the compute instance
- B
Securing the physical hardware in the OCI data center
- C
Managing user access and credentials
- D
Maintaining the underlying virtualization layer
Show answer and explanation
Correct answers: A, C
Explanation
Under OCI� Shared Security Responsibility model, Oracle secures the underlying infrastructure (data centers, hardware, network, and virtualization). Customers are responsible for securing their workloads, including operating system patches, IAM components, data configurations, and application-level security. Refer to OCI documentation at https://docs.oracle.com/en-us/iaas/Content/Security/Concepts/security_overview.htm for more details.
- A. Correct.
Correct. In an IaaS model on OCI, customers are responsible for maintaining and patching the operating system on their compute instances.
- B. Incorrect.
Incorrect. Oracle is responsible for securing the physical hardware, including data centers and network infrastructure.
- C. Correct.
Correct. Managing users, permissions, and credentials is the customer� responsibility, including creating and managing IAM policies, groups, and roles.
- D. Incorrect.
Incorrect. Oracle manages the underlying virtualization layer that supports compute instances.