Weekend Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Which of the following is the MOST important requirement and guidance for testing during an audit?

A.

Stakeholders

B.

Shareholders

C.

Management

D.

Regulations

What is the biggest challenge to data discovery in a cloud environment?

A.

Format

B.

Ownership

C.

Location

D.

Multitenancy

Which aspect of security is DNSSEC designed to ensure?

A.

Integrity

B.

Authentication

C.

Availability

D.

Confidentiality

Which of the following does NOT fall under the "IT" aspect of quality of service (QoS)?

A.

Applications

B.

Key performance indicators (KPIs)

C.

Services

D.

Security

Which security concept would business continuity and disaster recovery fall under?

A.

Confidentiality

B.

Availability

C.

Fault tolerance

D.

Integrity

Which aspect of cloud computing would make the use of a cloud the most attractive as a BCDR solution?

A.

Interoperability

B.

Resource pooling

C.

Portability

D.

Measured service

What concept does the "A" represent in the DREAD model?

A.

Affected users

B.

Authentication

C.

Affinity

D.

Authorization

Which type of controls are the SOC Type 1 reports specifically focused on?

A.

Integrity

B.

PII

C.

Financial

D.

Privacy

From a security perspective, which of the following is a major concern when evaluating possible BCDR solutions?

A.

Access provisioning

B.

Auditing

C.

Jurisdictions

D.

Authorization

Which security concept, if implemented correctly, will protect the data on a system, even if a malicious actor gains access to the actual system?

A.

Sandboxing

B.

Encryption

C.

Firewalls

D.

Access control

Which of the following service capabilities gives the cloud customer the most control over resources and configurations?

A.

Desktop

B.

Platform

C.

Infrastructure

D.

Software

Which of the following is NOT a focus or consideration of an internal audit?

A.

Certification

B.

Design

C.

Costs

D.

Operational efficiency

Which of the cloud deployment models offers the most control and input to the cloud customer as to how the overall cloud environment is implemented and configured?

A.

Public

B.

Community

C.

Hybrid

D.

Private

Which of the following would NOT be a reason to activate a BCDR strategy?

A.

Staffing loss

B.

Terrorism attack

C.

Utility disruptions

D.

Natural disaster

What does dynamic application security testing (DAST) NOT entail?

A.

Scanning

B.

Probing

C.

Discovery

D.

Knowledge of the system