nerdexam
Palo_Alto_Networks

PCCSA · Question #33

Which type of SaaS application is allowed and provided by an IT department?

The correct answer is B. sanctioned. Sanctioned SaaS applications are those officially approved, provided, and managed by an IT department - they meet security, compliance, and organizational standards, making B the correct answer. A (Tolerated): Tolerated apps are ones IT knows about but hasn't formally approved…

Cloud Security

Question

Which type of SaaS application is allowed and provided by an IT department?

Options

  • Atolerated
  • Bsanctioned
  • Cunsanctioned
  • Dunmanaged

How the community answered

(38 responses)
  • A
    5% (2)
  • B
    92% (35)
  • C
    3% (1)

Explanation

Sanctioned SaaS applications are those officially approved, provided, and managed by an IT department - they meet security, compliance, and organizational standards, making B the correct answer.

  • A (Tolerated): Tolerated apps are ones IT knows about but hasn't formally approved - they exist in a gray zone, not actively provided by IT.
  • C (Unsanctioned): Unsanctioned (also called "shadow IT") apps are used without IT's knowledge or approval - the opposite of what IT provides.
  • D (Unmanaged): Unmanaged refers to apps outside IT's control or governance, not something IT would actively provide.

Memory tip: Think "sanctioned = sanctioned by IT" - if IT blesses it, budgets for it, and manages it, it's sanctioned. The prefix "un-" in unsanctioned and unmanaged signals IT has no hand in it.

Topics

#SaaS governance#Application classification#Cloud security#IT policy

Community Discussion

No community discussion yet for this question.

Full PCCSA Practice