Free CCAK Exam Braindumps (page: 23)

Page 23 of 78

What data center and physical security measures should a cloud customer consider when assessing a cloud service provider?

  1. Assess use of monitoring systems to control ingress and egress points of entry to the data center.
  2. Implement physical security perimeters to safeguard personnel, data and information systems.
  3. Conduct a due diligence to verify the cloud provider applies adequate physical security measures.
  4. Review internal policies and procedures for relocation of hardware and software to an offsite location.

Answer(s): C


Reference:

https://www.omg.org/cloud/deliverables/CSCC-Security-for-Cloud-Computing-10-Steps-to-Ensure-Success.pdf



Which of the following is the MOST important audit scope document when conducting a review of a cloud service provider?

  1. Updated audit/work program
  2. Documentation criteria for the audit evidence
  3. Processes and systems to be audited
  4. Testing procedure to be performed

Answer(s): B



When establishing cloud governance, an organization should FIRST test by migrating:

  1. all applications at once to the cloud.
  2. complex applications to the cloud.
  3. legacy applications to the cloud.
  4. a few applications to the cloud.

Answer(s): D



When reviewing a third-party agreement with a cloud service provider, which of the following should be the GREATEST concern regarding customer data privacy?

  1. Data retention, backup, and recovery
  2. Patch management process
  3. Return or destruction of information
  4. Network intrusion detection

Answer(s): A


Reference:

https://arxiv.org/pdf/1303.4814.pdf



Page 23 of 78



Post your Comments and Discuss ISACA CCAK exam with other Community members:

ccak commented on June 08, 2023
ccak is hard
Anonymous
upvote