Question 176

What legal documents should be provided to the auditors in relation to risk management?
  • Question 177

    An independent contractor is assessing the security maturity of a Software as a Service (SaaS) company against industry standards. The SaaS company has developed and hosted all its products using the cloud services provided by a third-party cloud service provider. What is the optimal and most efficient mechanism to assess the controls provider is responsible for?
  • Question 178

    Which of the following standards is designed to be used by organizations for cloud services that intend to select controls within the process of implementing an information security management system based on ISO/IEC 27001?
  • Question 179

    What data center and physical security measures should a cloud customer consider when assessing a cloud service provider?
  • Question 180

    A certification target helps in the formation of a continuous certification framework by incorporating: