ExamGecko
Question list
Search
Search

Related questions











Question 590 - CRISC discussion

Report
Export

While reviewing a contract of a cloud services vendor, it was discovered that the vendor refuses to accept liability for a sensitive data breach. Which of the following controls will BES reduce the risk associated with such a data breach?

A.
Ensuring the vendor does not know the encryption key
Answers
A.
Ensuring the vendor does not know the encryption key
B.
Engaging a third party to validate operational controls
Answers
B.
Engaging a third party to validate operational controls
C.
Using the same cloud vendor as a competitor
Answers
C.
Using the same cloud vendor as a competitor
D.
Using field-level encryption with a vendor supplied key
Answers
D.
Using field-level encryption with a vendor supplied key
Suggested answer: B
asked 18/09/2024
Jose Walter
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first