Q: 1
Regarding cloud service provider agreements and contracts, unless otherwise stated, the provider is:
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 2
What does “The Egregious 11" refer to?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 3
Which of the following principles, when combined with a structured development methodology,
would BEST contribute to the consistent introduction of secure and compliant Software as a Service
(SaaS) solutions in an organization?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 4
Which of the following is the BEST method to demonstrate assurance in the cloud services to
multiple cloud customers?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 5
The PRIMARY purpose of Open Certification Framework (OCF) for the CSA STAR program is to:
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 6
Which objective is MOST appropriate to measure the effectiveness of password policy?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 7
Which of the following is a good candidate for continuous auditing?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 8
Who should define what constitutes a policy violation?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 9
In relation to testing business continuity management and operational resilience, an auditor should
review which of the following database documentation?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Question 1 of 20 · Page 1 / 2