Question 31

Which of the following should be of GREATEST concern to an IS auditor reviewing actions taken during a forensic investigation?
  • Question 32

    When building a cloud governance model, which of the following requirements will focus more on the cloud service provider's evaluation and control checklist?
  • Question 33

    SAST testing is performed by:
  • Question 34

    In all three cloud deployment models, (IaaS, PaaS, and SaaS), who is responsible for the patching of the hypervisor layer?
  • Question 35

    Dynamic Application Security Testing (DAST) might be limited or require pre-testing permission from the provider.