ExamGecko
Question list
Search
Search

List of questions

Search

Question 130 - CCAK discussion

Report
Export

Which industry organization offers both security controls and cloud-relevant benchmarking?

A.

Cloud Security Alliance (CSA)

Answers
A.

Cloud Security Alliance (CSA)

B.

SANS Institute

Answers
B.

SANS Institute

C.

International Organization for Standardization (ISO)

Answers
C.

International Organization for Standardization (ISO)

D.

Center for Internet Security (CIS)

Answers
D.

Center for Internet Security (CIS)

Suggested answer: A

Explanation:

The Cloud Security Alliance (CSA) provides both cloud-specific security controls (Cloud Controls Matrix, CCM) and benchmarking tools like the CSA STAR program. CSA's CCM maps industry standards and best practices tailored to cloud security requirements, and STAR provides a transparency and assurance framework for benchmarking security maturity. These resources are widely used and referenced in ISACA's CCAK for cloud auditing and are integral for organizations seeking structured guidance on cloud security.

asked 17/11/2024
Matthew Cole
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first