Câu 27: CCA: CMMC Certified Assessor
An OSC outsources all of its security incident and event monitoring work to a third-party SOC. Additionally, the OSC utilizes a cloud hosted antivirus (AV) system to fulfill the requirement of having virus protection without hosting additional servers on-site. During the scoping discussion, both the SOC and AV should…
Nội dung câu hỏi
An OSC outsources all of its security incident and event monitoring work to a third-party SOC. Additionally, the OSC utilizes a cloud hosted antivirus (AV) system to fulfill the requirement of having virus protection without hosting additional servers on-site. During the scoping discussion, both the SOC and AV should be listed as what type of asset?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. They are Out-of-Scope Assets due to being fully hosted/operated by third parties.
- B. They are Security Protection Assets due to their performance of security functions. — đáp án hiện tại
- C. They are CUI Assets due to their operation within a CUI network.
- D. They are Contractor Risk Managed Assets because they are not physically or logically isolated from CUI assets.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.