Câu 10: CCAK: Certificate of Cloud Auditing Knowledge
Since CCM allows cloud customers to build a detailed list of requirements and controls to be implemented by the CSP as part of their overall third-party risk management and procurement program, will CCM alone be enough to define all the items to be considered when operating/using cloud services?
Nội dung câu hỏi
Since CCM allows cloud customers to build a detailed list of requirements and controls to be implemented by the CSP as part of their overall third-party risk management and procurement program, will CCM alone be enough to define all the items to be considered when operating/using cloud services?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. No. CCM must be completed with definitions established by the CSP because of its relevance to service continuity.
- B. Yes. CCM suffices since it maps a huge library of widely accepted frameworks.
- C. Yes. When implemented in the right manner, CCM alone can help to measure, assess and monitor the risk associated with a CSP or a particular service.
- D. No. CCM can serve as a foundation for a cloud assessment program, but it needs to be completed with requirements applicable to each company. — đáp án hiện tại
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.
Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.