nerdexam
IsacaIsaca

CCAK · Question #5

CCAK Question #5: Real Exam Question with Answer & Explanation

Sign in or unlock CCAK to reveal the answer and full explanation for question #5. The question stem and answer options stay visible for context.

Cloud Auditing Basics and Tools

Question

An independent contractor is assessing security maturity of a SaaS company against industry standards. The SaaS company has developed and hosted all their products using the cloud services provided by a third-party cloud service provider (CSP). What is the optimal and most efficient mechanism to assess the controls CSP is responsible for?

Options

  • AReview third-party audit reports.
  • BReview CSP's published questionnaires.
  • CDirectly audit the CSP.
  • DSend supplier questionnaire to the CSP.

Unlock CCAK to see the answer

You've previewed enough free CCAK questions. Unlock CCAK for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#CSP assessment#Vendor risk management#Cloud auditing mechanisms#Security controls assessment
Full CCAK PracticeBrowse All CCAK Questions