List of questions
Related questions
Question 1059 - CISSP discussion
An organization needs a general purpose document to prove that its internal controls properly address security, availability, processing integrity, confidentiality or privacy risks. Which of the following reports is required?
A.
A Service Organization Control (SOC) 3 report
B.
The Statement on Standards for Attestation Engagements No. 18 (SSAE 18)
C.
A Service Organization Control (SOC) 2 report
D.
The International Organization for Standardization (ISO) 27001
Your answer:
0 comments
Sorted by
Leave a comment first