nerdexam
(ISC)2

CCSP · Question #420

Which of the following may unilaterally deem a cloud hosting model inappropriate for a system or application?

The correct answer is C. Regulation. Regulations (legal and compliance frameworks such as HIPAA, GDPR, FedRAMP, PCI-DSS) can unilaterally - meaning without negotiation or agreement from other parties - prohibit certain data or workloads from being hosted in specific cloud environments. For example, classified govern

Submitted by cyberguy42· Apr 18, 2026Legal, Risk and Compliance

Question

Which of the following may unilaterally deem a cloud hosting model inappropriate for a system or application?

Options

  • AMultitenancy
  • BCertification
  • CRegulation
  • DVirtualization

How the community answered

(55 responses)
  • B
    2% (1)
  • C
    95% (52)
  • D
    4% (2)

Explanation

Regulations (legal and compliance frameworks such as HIPAA, GDPR, FedRAMP, PCI-DSS) can unilaterally - meaning without negotiation or agreement from other parties - prohibit certain data or workloads from being hosted in specific cloud environments. For example, classified government data may be prohibited from public clouds by law. Multitenancy (A) is a cloud architecture characteristic, not a governing body. Certification (B) is a process of validating compliance, not a prohibitive authority. Virtualization (D) is a technology, not a regulatory framework.

Topics

#Regulatory compliance#Cloud governance#Legal requirements#Cloud adoption

Community Discussion

No community discussion yet for this question.

Full CCSP Practice