ExamGecko
Question list
Search
Search

List of questions

Search

Question 158 - CCAK discussion

Report
Export

From a compliance perspective, which of the following artifacts should an assessor review when evaluating the effectiveness of Infrastructure as Code deployments?

A.

Evaluation summaries

Answers
A.

Evaluation summaries

B.

logs

Answers
B.

logs

C.

SOC reports

Answers
C.

SOC reports

D.

Interviews

Answers
D.

Interviews

Suggested answer: B

Explanation:

From a compliance perspective, reviewing logs is crucial when evaluating the effectiveness of Infrastructure as Code (IaC) deployments. Logs provide a detailed record of events, changes, and operations that have occurred within the IaC environment. They are essential for tracking the deployment process, identifying issues, and verifying that the infrastructure has been configured and is operating as intended. Logs can also be used to ensure that the IaC deployments comply with security policies and regulatory requirements, making them a vital artifact for assessors.

Reference The importance of logs in assessing IaC deployments is supported by cybersecurity best practices, which recommend the use of logs for auditable records of changes to template files and for tracking resource protection1.Additionally, ISACA's resources on securing IaC highlight the role of logs in providing transparency and enabling infrastructure blueprints to be audited and reviewed for common errors or misconfigurations2.

asked 17/11/2024
Sae Frrr
29 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first