Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Cloud Security Alliance Cloud Security Knowledge CCSK Questions and answers with CertsForce

Viewing page 9 out of 10 pages
Viewing questions 81-90 out of questions
Questions # 81:

In the Software-as-a-service relationship, who is responsible for the majority of the security?

Options:

A.

Application Consumer


B.

Database Manager


C.

Application Developer


D.

Cloud Provider


E.

Web Application CISO


Expert Solution
Questions # 82:

CCM: In the CCM tool, ais a measure that modifies risk and includes any process, policy, device, practice or any other actions which modify risk.

Options:

A.

Risk Impact


B.

Domain


C.

Control Specification


Expert Solution
Questions # 83:

What item below allows disparate directory services and independent security domains to be interconnected?

Options:

A.

Coalition


B.

Cloud


C.

Intersection


D.

Union


E.

Federation


Expert Solution
Questions # 84:

Dynamic Application Security Testing (DAST) might be limited or require pre-testing permission from the provider.

Options:

A.

False


B.

True


Expert Solution
Questions # 85:

A cloud deployment of two or more unique clouds is known as:

Options:

A.

Infrastructures as a Service


B.

A Private Cloud


C.

A Community Cloud


D.

A Hybrid Cloud


E.

Jericho Cloud Cube Model


Expert Solution
Questions # 86:

What process involves an independent examination of records, operations, processes, and controls within an organization to ensure compliance with cybersecurity policies, standards, and regulations?

Options:

A.

Risk assessment


B.

Audit


C.

Penetration testing


D.

Incident response


Expert Solution
Questions # 87:

CCM: A hypothetical company called: “Health4Sure” is located in the United States and provides cloud based services for tracking patient health. The company is compliant with HIPAA/HITECH Act among other industry standards. Health4Sure decides to assess the overall security of their cloud service against the CCM toolkit so that they will be able to present this document to potential clients.

Which of the following approach would be most suitable to assess the overall security posture of Health4Sure’s cloud service?

Options:

A.

The CCM columns are mapped to HIPAA/HITECH Act and therefore Health4Sure could verify the CCM controls already covered ad a result of their compliance with HIPPA/HITECH Act. They could then assess the remaining controls. This approach will save time.


B.

The CCM domain controls are mapped to HIPAA/HITECH Act and therefore Health4Sure could verify the CCM controls already covered as a result of their compliance with HIPPA/HITECH Act. They could then assess the remaining controls thoroughly. This approach saves time while being able to assess the company’s overall security posture in an efficient manner.


C.

The CCM domains are not mapped to HIPAA/HITECH Act. Therefore Health4Sure should assess the security posture of their cloud service against each and every control in the CCM. This approach will allow a thorough assessment of the security posture.


Expert Solution
Questions # 88:

Which technique involves assessing potential threats through analyzing attacker capabilities, motivations, and potential targets?

Options:

A.

Threat modeling


B.

Vulnerability assessment


C.

Incident response


D.

Risk assessment


Expert Solution
Questions # 89:

What is a key consideration when handling cloud security incidents?

Options:

A.

Monitoring network traffic


B.

Focusing on technical fixes


C.

Cloud service provider service level agreements


D.

Hiring additional staff


Expert Solution
Questions # 90:

Which benefit of automated deployment pipelines most directly addresses continuous security and reliability?

Options:

A.

They enable consistent and repeatable deployment processes


B.

They enhance collaboration through shared tools


C.

They provide detailed reports on team performance


D.

They ensure code quality through regular reviews


Expert Solution
Viewing page 9 out of 10 pages
Viewing questions 81-90 out of questions