CompTIA
CAS-003 · Question #161
CAS-003 Question #161: Real Exam Question with Answer & Explanation
Sign in or unlock CAS-003 to reveal the answer and full explanation for question #161. The question stem and answer options stay visible for context.
Question
A company is in the process of outsourcing its customer relationship management system to a cloud provider. It will host the entire organization's customer database. The database will be accessed by both the company's users and its customers. The procurement department has asked what security activities must be performed for the deal to proceed. Which of the following are the MOST appropriate security activities to be performed as part of due diligence? (Select TWO).
Options
- APhysical penetration test of the datacenter to ensure there are appropriate controls.
- BPenetration testing of the solution to ensure that the customer data is well protected.
- CSecurity clauses are implemented into the contract such as the right to audit.
- DReview of the organizations security policies, procedures and relevant hosting certifications.
- ECode review of the solution to ensure that there are no back doors located in the software.
Unlock CAS-003 to see the answer
You've previewed enough free CAS-003 questions. Unlock CAS-003 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.