nerdexam
(ISC)2(ISC)2

CISSP · Question #1333

CISSP Question #1333: Real Exam Question with Answer & Explanation

Sign in or unlock CISSP to reveal the answer and full explanation for question #1333. The question stem and answer options stay visible for context.

Submitted by chen.hong· Mar 5, 2026Security and Risk Management

Question

An international trading organization that holds an International Organization for Standardization (ISO) 27001 certification is seeking to outsource their security monitoring to a managed security service provider (MSSP), The trading organization's security officer is tasked with drafting the requirements that need to be included in the outsourcing contract. Which of the following MUST be included in the contract?

Options

  • AA detailed overview of all equipment involved in the outsourcing contract
  • BThe MSSP having an executive manager responsible for information security
  • CThe right to perform security compliance tests on the MSSP's equipment
  • DThe right to audit the MSSP's security process

Unlock CISSP to see the answer

You've previewed enough free CISSP questions. Unlock CISSP for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Outsourcing security#MSSP#Contractual requirements#Right to audit#ISO 27001
Full CISSP PracticeBrowse All CISSP Questions