ExamGecko
Home Home / ISC / CCSP
Question list
Search
Search

Question 366 - CCSP discussion

Report
Export

Which of the following would be considered an example of insufficient due diligence leading to security or operational problems when moving to a cloud?

A.
Monitoring
Answers
A.
Monitoring
B.
Use of a remote key management system
Answers
B.
Use of a remote key management system
C.
Programming languages used
Answers
C.
Programming languages used
D.
Reliance on physical network controls
Answers
D.
Reliance on physical network controls
Suggested answer: D

Explanation:

Many organizations in a traditional data center make heavy use of physical network controls for security. Although this is a perfectly acceptable best practice in a traditional data center, this reliance is not something that will port to a cloud environment. The failure of an organization to properly understand and adapt to the difference in network controls when moving to a cloud will likely leave an application with security holes and vulnerabilities. The use of a remote key management system, monitoring, or certain programming languages would not constitute insufficient due diligence by itself.

asked 18/09/2024
Tim Wersinger
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first