Isaca CCAK Practice Test - Questions Answers, Page 11

List of questions
Question 101

A large organization with subsidiaries in multiple locations has a business requirement to organize IT systems to have identified resources reside in particular locations with organizational personnel. Which access control method will allow IT personnel to be segregated across the various locations?
Question 102

When reviewing a third-party agreement with a cloud service provider, which of the following should be the GREATEST concern regarding customer data privacy?
Question 103

The MAIN difference between Cloud Control Matrix (CCM) and Consensus Assessment Initiative Questionnaire (CAIQ) is that:
Question 104

Which objective is MOST appropriate to measure the effectiveness of password policy?
Question 105

Supply chain agreements between CSP and cloud customers should, at minimum, include:
Question 106

Which of the following is an example of financial business impact?
Question 107

What should be the auditor's PRIMARY objective while examining a cloud service provider's (CSP's) SLA?
Question 108

The MOST critical concept of managing the build and test of code in DevOps is:
Question 109

A CSP contracts for a penetration test to be conducted on its infrastructures. The auditor engages the target with no prior knowledge of its defenses, assets, or channels. The CSP's security operation center is not notified in advance of the scope of the audit and the test vectors. Which mode is selected by the CSP?
Question 110

Which of the following contract terms is necessary to meet a company's requirement that needs to move data from one CSP to another?
Question