Question 6

Which of the following should be an IS auditor's GREATEST concern when reviewing an outsourcing arrangement with a third-party cloud service provider to host personally identifiable data?
  • Question 7

    Which of the following standards is designed to be used by organizations for cloud services that intend to select controls within the process of implementing an information security management system based on ISO/IEC 27001?
  • Question 8

    The FINAL decision to include a material finding in a cloud audit report should be made by the:
  • Question 9

    To ensure a cloud service provider is complying with an organization's privacy requirements, a cloud auditor should FIRST review:
  • Question 10

    The BEST way to deliver continuous compliance in a cloud environment is to: