CCSP Exam Questions
876 real CCSP exam questions with expert-verified answers and explanations. Page 16 of 18.
- Question #760Cloud Platform & Infrastructure Security
Which of the following is considered a technological control?
Security ControlsTechnological ControlsFirewallNetwork Security - Question #761Cloud Concepts, Architecture and Design
When using an IaaS solution, what is the capability provided to the customer?
IaaSCloud Service ModelsCustomer Capabilities - Question #762Cloud Concepts, Architecture and Design
When using an IaaS solution, what is a key benefit provided to the customer?
IaaS benefitsCloud economicsConsumption-based pricingPay-as-you-go - Question #763Legal, Risk and Compliance
Which of the following is considered an administrative control?
Security ControlsAdministrative ControlsAccess Control Processes - Question #764Cloud Concepts, Architecture and Design
What is a key capability or characteristic of PaaS?
PaaSCloud Service ModelsVendor Lock-inCloud Architecture - Question #765Cloud Concepts, Architecture and Design
In which cloud service model is the customer required to maintain the OS?
Cloud service modelsIaaSShared responsibility modelCloud infrastructure - Question #766Cloud Concepts, Architecture and Design
When using a PaaS solution, what is the capability provided to the customer?
PaaSCloud service modelsCustomer capabilitiesCloud architecture - Question #767Legal, Risk and Compliance
What are SOC 1/SOC 2/SOC 3?
SOC reportsAuditingComplianceThird-party assurance - Question #768Legal, Risk and Compliance
Gathering business requirements can aid the organization in determining all of this information about organizational assets, except:
Business RequirementsAsset ManagementRisk ManagementAsset Valuation - Question #769Cloud Concepts, Architecture and Design
In attempting to provide a layered defense, the security practitioner should convince senior management to include security controls of which type?
Layered DefenseDefense-in-DepthSecurity ControlsTypes of Security Controls - Question #770Legal, Risk and Compliance
The BIA can be used to provide information about all the following, except:
Business Impact AnalysisRisk ManagementBusiness ContinuityDisaster Recovery - Question #771Cloud Concepts, Architecture and Design
Which of the following are cloud computing roles?
Cloud RolesCloud Computing ConceptsCloud Service ProviderCloud Ecosystem - Question #772Cloud Concepts, Architecture and Design
Which of the following are considered to be the building blocks of cloud computing?
Cloud fundamentalsCore infrastructureHardware components - Question #773Cloud Platform & Infrastructure Security
Which of the following is considered a physical control?
Physical SecuritySecurity ControlsPerimeter SecurityAsset Protection - Question #774Cloud Data Security
What is an experimental technology that is intended to create the possibility of processing encrypted data without having to decrypt it first?
Homomorphic EncryptionData SecurityPrivacy Enhancing TechnologiesCloud Data Processing - Question #775Cloud Concepts, Architecture and Design
Which of the following are distinguishing characteristics of a managed service provider?
Managed Service Provider (MSP)Cloud Service Provider (CSP)Service characteristicsProactive maintenance - Question #776Cloud Data Security
To protect data on user devices in a BYOD environment, the organization should consider requiring all the following, except:
BYOD SecurityEndpoint ProtectionData Loss PreventionAuthentication - Question #777Cloud Data Security
Tokenization requires two distinct _________________ .
TokenizationData SecurityData ProtectionDatabase Security - Question #778Cloud Data Security
DLP can be combined with what other security technology to enhance data controls?
DLPDRMData ControlsSecurity Technologies - Question #779Legal, Risk and Compliance
What is the intellectual property protection for a confidential recipe for muffins?
Intellectual PropertyTrade SecretsLegal ProtectionInformation Assets - Question #780Legal, Risk and Compliance
Every security program and process should have which of the following?
Security PolicySecurity GovernanceRisk ManagementCompliance - Question #781Cloud Data Security
DLP solutions can aid in deterring loss due to which of the following?
DLPData Loss PreventionData SecuritySecurity Controls - Question #782Legal, Risk and Compliance
All policies within the organization should include a section that includes all of the following, except:
Organizational PolicyPolicy LifecyclePolicy Management - Question #783Cloud Data Security
Proper implementation of DLP solutions for successful function requires which of the following?
DLPData ClassificationData Security Controls - Question #784Cloud Data Security
What is the experimental technology that might lead to the possibility of processing encrypted data without having to decrypt it first?
Homomorphic encryptionData privacyCryptographic techniquesEmerging technologies - Question #785Cloud Data Security
Data labels could include all the following, except:
Data labelingData classificationInformation handlingData security controls - Question #786Cloud Concepts, Architecture and Design
In the cloud motif, the data owner is usually:
Cloud rolesData ownershipCloud customerShared responsibility - Question #787Cloud Data Security
The goals of DLP solution implementation include all of the following, except:
DLPData Loss PreventionSecurity ControlsCloud Security - Question #788Legal, Risk and Compliance
What is the intellectual property protection for a useful manufacturing innovation?
Intellectual PropertyPatentLegal ConceptsCompliance - Question #789Cloud Data Security
The most pragmatic option for data disposal in the cloud is which of the following?
CryptoshreddingData disposalCloud data securityData sanitization - Question #790Legal, Risk and Compliance
In the cloud motif, the data processor is usually:
Cloud RolesData ProcessorCloud ProviderLegal Compliance - Question #791Legal, Risk and Compliance
What is the intellectual property protection for the tangible expression of a creative idea?
Intellectual PropertyCopyrightLegal Concepts - Question #792Cloud Security Operations
The goals of SIEM solution implementation include all of the following, except:
SIEMSecurity OperationsLog ManagementSecurity Monitoring - Question #793Cloud Data Security
Data masking can be used to provide all of the following functionality, except:
Data MaskingData SecurityAuthenticationSecurity Controls - Question #794Cloud Data Security
All of the following are terms used to described the practice of obscuring original raw data so that only a portion is displayed for operational purposes, except:
Data maskingTokenizationData obfuscationData discovery - Question #795Cloud Data Security
DLP solutions can aid in deterring loss due to which of the following?
DLPData Loss PreventionData ProtectionMalicious Disclosure - Question #796Cloud Data Security
All the following are data analytics modes, except:
Data analytics modesDataminingReal-time analyticsBusiness intelligence - Question #797Legal, Risk and Compliance
What are the U.S. State Department controls on technology exports known as?
ITARExport ControlsComplianceRegulations - Question #798Cloud Data Security
When crafting plans and policies for data archiving, we should consider all of the following, except:
Data ArchivingData Retention PolicyData StorageCloud Data Security - Question #799Cloud Data Security
DLP solutions can aid in deterring loss due to which of the following?
DLPData Loss PreventionData SecurityInformation Protection - Question #800Cloud Data Security
DLP can be combined with what other security technology to enhance data controls?
DLPDRMData protectionSecurity controls - Question #802Cloud Data Security
Data masking can be used to provide all of the following functionality, except:
Data MaskingData SecurityAnonymizationPrivacy Controls - Question #803Cloud Data Security
Cryptographic keys for encrypted data stored in the cloud should be ________________ .
Key ManagementCloud EncryptionData SecurityBYOK - Question #804Cloud Data Security
Tokenization requires two distinct _________________ .
TokenizationData SecuritySecure Data StorageCloud Security Architecture - Question #805Cloud Data Security
Best practices for key management include all of the following, except:
Key managementCryptographySecurity best practicesKey lifecycle - Question #806Cloud Data Security
Data labels could include all the following, except:
Data classificationData labelingData securityAccess control - Question #807Cloud Data Security
What is the correct order of the phases of the data life cycle?
data life cycledata managementdata security - Question #808Cloud Data Security
Cryptographic keys should be secured ________________ .
Cryptographic keysKey managementData security principlesInformation protection - Question #809Cloud Data Security
What is the experimental technology that might lead to the possibility of processing encrypted data without having to decrypt it first?
Homomorphic EncryptionCryptographyData PrivacyConfidential Computing - Question #810Cloud Concepts, Architecture and Design
What are third-party providers of IAM functions for the cloud environment?
CASBIAMCloud Security ArchitectureThird-Party Services