Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Pass the ISC Cloud Security CCSP Questions and answers with ValidTests

Exam CCSP All Questions
Exam CCSP Premium Access

View all detail and faqs for the CCSP exam

Viewing page 2 out of 11 pages
Viewing questions 16-30 out of questions
Questions # 16:

Which type of controls are the SOC Type 1 reports specifically focused on?

Options:

A.

Integrity

B.

PII

C.

Financial

D.

Privacy

Expert Solution
Questions # 17:

Other than cost savings realized due to measured service, what is another facet of cloud computing that will typically save substantial costs in time and money for an organization in the event of a disaster?

Options:

A.

Broad network access

B.

Interoperability

C.

Resource pooling

D.

Portability

Expert Solution
Questions # 18:

All of the following are terms used to described the practice of obscuring original raw data so that only a portion is displayed for operational purposes, except:

Options:

A.

Tokenization

B.

Masking

C.

Data discovery

D.

Obfuscation

Expert Solution
Questions # 19:

Which of the following is not a component of contractual PII?

Options:

A.

Scope of processing

B.

Value of data

C.

Location of data

D.

Use of subcontractors

Expert Solution
Questions # 20:

Which of the following is NOT a regulatory system from the United States federal government?

Options:

A.

PCI DSS

B.

FISMA

C.

SOX

D.

HIPAA

Expert Solution
Questions # 21:

In order to prevent cloud customers from potentially consuming enormous amounts of resources within a cloud environment and thus having a negative impact on other customers, what concept is commonly used by a cloud provider?

Options:

A.

Limit

B.

Cap

C.

Throttle

D.

Reservation

Expert Solution
Questions # 22:

Which of the following statements best describes a Type 1 hypervisor?

Options:

A.

The hypervisor software runs within an operating system tied to the hardware.

B.

The hypervisor software runs as a client on a server and needs an external service to administer it.

C.

The hypervisor software runs on top of an application layer.

D.

The hypervisor software runs directly on “bare metal” without an intermediary.

Expert Solution
Questions # 23:

Which cloud storage type requires special consideration on the part of the cloud customer to ensure they do not program themselves into a vendor lock-in situation?

Options:

A.

Unstructured

B.

Object

C.

Volume

D.

Structured

Expert Solution
Questions # 24:

Which of the following is not a risk management framework?

Options:

A.

COBIT

B.

Hex GBL

C.

ISO 31000:2009

D.

NIST SP 800-37

Expert Solution
Questions # 25:

In a federated identity arrangement using a trusted third-party model, who is the identity provider and who is the relying party?

Options:

A.

The users of the various organizations within the federations within the federation/a CASB

B.

Each member organization/a trusted third party

C.

Each member organization/each member organization

D.

A contracted third party/the various member organizations of the federation

Expert Solution
Questions # 26:

Which cloud service category most commonly uses client-side key management systems?

Options:

A.

Software as a Service

B.

Infrastructure as a Service

C.

Platform as a Service

D.

Desktop as a Service

Expert Solution
Questions # 27:

Best practices for key management include all of the following, except:

Options:

A.

Ensure multifactor authentication

B.

Pass keys out of band

C.

Have key recovery processes

D.

Maintain key security

Expert Solution
Questions # 28:

What is the biggest challenge to data discovery in a cloud environment?

Options:

A.

Format

B.

Ownership

C.

Location

D.

Multitenancy

Expert Solution
Questions # 29:

Which aspect of cloud computing makes data classification even more vital than in a traditional data center?

Options:

A.

Interoperability

B.

Virtualization

C.

Multitenancy

D.

Portability

Expert Solution
Questions # 30:

Which of the following is NOT a focus or consideration of an internal audit?

Options:

A.

Certification

B.

Design

C.

Costs

D.

Operational efficiency

Expert Solution
Viewing page 2 out of 11 pages
Viewing questions 16-30 out of questions