Câu 8: CCAK: Certificate of Cloud Auditing Knowledge
During an audit it was identified that a critical application hosted in an off-premises cloud is not part of the organization’s DRP (Disaster Recovery Plan). Management stated that it is responsible for ensuring that the cloud service provider (CSP) has a plan that is tested annually. What should be the auditor’s NEXT…
Nội dung câu hỏi
During an audit it was identified that a critical application hosted in an off-premises cloud is not part of the organization’s DRP (Disaster Recovery Plan). Management stated that it is responsible for ensuring that the cloud service provider (CSP) has a plan that is tested annually. What should be the auditor’s NEXT course of action?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Review the CSP audit reports.
- B. Review the security white paper of the CSP.
- C. Review the contract and DR capability. — đáp án hiện tại
- D. Plan an audit of the CSP.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.