Free CCAK Exam Braindumps (page: 13)

Page 13 of 78

Which of the following is the BEST recommendation to offer an organization’s HR department planning to adopt a new public SaaS application to ease the recruiting process?

  1. Ensure HIPAA compliance
  2. Implement a cloud access security broker
  3. Consult the legal department
  4. Do not allow data to be in cleratext

Answer(s): B


Reference:

https://www.mcafee.com/enterprise/en-us/security-awareness/cloud/what-is-a-casb.html



In which control should a cloud service provider, upon request, inform customers of compliance impact and risk, especially if customer data is used as part of the services?

  1. Service Provider control
  2. Impact and Risk control
  3. Data Inventory control
  4. Compliance control

Answer(s): A


Reference:

https://rmas.fad.harvard.edu/cloud-service-providers



What is the advantage of using dynamic application security testing (DAST) over static application security testing (SAST) methodology?

  1. Unlike SAST, DAST is a blackbox and programming language agnostic.
  2. DAST can dynamically integrate with most CI/CD tools.
  3. DAST delivers more false positives than SAST.
  4. DAST is slower but thorough.

Answer(s): A


Reference:

https://www.synopsys.com/blogs/software-security/sast-vs-dast-difference/



Which of the following is a direct benefit of mapping the Cloud Control Matrix (CCM) to other international standards and regulations?

  1. CCM mapping entitles cloud service providers to be listed as an approved supplier for tenders and government contracts.
  2. CCM mapping enables cloud service providers and customers alike to streamline their own compliance and security efforts.
  3. CCM mapping enables an uninterrupted data flow and, in particular, the export of personal data across different jurisdictions.
  4. CCM mapping entitles cloud service providers to be certified under the CSA STAR program.

Answer(s): B


Reference:

https://cloudsecurityalliance.org/press-releases/2021/03/15/cloud-security-alliance- releasesadditional-mappings-update-to-cloud-controls-matrix-ccm-v4/



Page 13 of 78



Post your Comments and Discuss ISACA CCAK exam with other Community members:

ccak commented on June 08, 2023
ccak is hard
Anonymous
upvote