SY0-701 · Question #887
SY0-701 Question #887: Real Exam Question with Answer & Explanation
The correct answer is B: Third-party audit. A third-party audit provides independent verification that the SaaS vendor’s security controls and processes meet industry standards, which helps the security analyst assess the actual security posture of the application before purchase.
Question
A security analyst is reviewing the security or a SaaS application that the company intends to purchase. Which of the following documentations should the security analyst request from the SaaS application vendor?
Options
- AService-level agreement
- BThird-party audit
- CStatement or work
- DData privacy agreement
Explanation
A third-party audit provides independent verification that the SaaS vendor’s security controls and processes meet industry standards, which helps the security analyst assess the actual security posture of the application before purchase.
Community Discussion
No community discussion yet for this question.