ExamGecko
Question list
Search
Search

List of questions

Search

Question 150 - CCAK discussion

Report
Export

organization should document the compliance responsibilities and ownership of accountability in a RACI chart or its informational equivalents in order to:

A.

provide a holistic and seamless view of the cloud service provider's responsibility for compliance with prevailing laws and regulations.

Answers
A.

provide a holistic and seamless view of the cloud service provider's responsibility for compliance with prevailing laws and regulations.

B.

provide a holistic and seamless view of the enterprise's responsibility for compliance with prevailing laws and regulations.

Answers
B.

provide a holistic and seamless view of the enterprise's responsibility for compliance with prevailing laws and regulations.

C.

conform to the organization's governance model.

Answers
C.

conform to the organization's governance model.

D.

define the cloud compliance requirements and how they interplay with the organization's business strategy, goals, and other compliance requirements.

Answers
D.

define the cloud compliance requirements and how they interplay with the organization's business strategy, goals, and other compliance requirements.

Suggested answer: B

Explanation:

A RACI chart is a tool used to clarify the roles and responsibilities in processes, projects, or operations. In the context of cloud compliance, documenting these responsibilities in a RACI chart ensures that all parties within the enterprise are aware of their specific obligations regarding compliance with laws and regulations. This helps in creating a clear, organized view of how each part of the organization contributes to overall compliance, facilitating better coordination and accountability.

Reference The answer is informed by general best practices in cloud compliance and governance, which recommend the use of RACI charts or similar tools to delineate responsibilities clearly. While I can't reference specific documents from the CCAK or related resources, these practices are widely accepted in the field of cloud security and compliance.

asked 17/11/2024
N C
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first