Isaca Certified in Risk and Information Systems Control CRISC Question # 244 Topic 25 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 244 Topic 25 Discussion

CRISC Exam Topic 25 Question 244 Discussion:
Question #: 244
Topic #: 25

A risk practitioner is concerned with potential data loss in the event of a breach at a hosted third-party provider. Which of the following is the BEST way to mitigate this risk?


A.

Include an indemnification clause in the provider's contract.


B.

Monitor provider performance against service level agreements (SLAs).


C.

Purchase cyber insurance to protect against data breaches.


D.

Ensure appropriate security controls are in place through independent audits.


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.