exam questions

Exam CAS-002 All Questions

View all questions & answers for the CAS-002 exam

Exam CAS-002 topic 2 question 7 discussion

Actual exam question from CompTIA's CAS-002
Question #: 7
Topic #: 2
[All CAS-002 Questions]

A company is in the process of outsourcing its customer relationship management system to a cloud provider. It will host the entire organizations customer database. The database will be accessed by both the companys users and its customers. The procurement department has asked what security activities must be performed for the deal to proceed. Which of the following are the MOST appropriate security activities to be performed as part of due diligence? (Select TWO).

  • A. Physical penetration test of the datacenter to ensure there are appropriate controls.
  • B. Penetration testing of the solution to ensure that the customer data is well protected.
  • C. Security clauses are implemented into the contract such as the right to audit.
  • D. Review of the organizations security policies, procedures and relevant hosting certifications.
  • E. Code review of the solution to ensure that there are no back doors located in the software.
Show Suggested Answer Hide Answer
Suggested Answer: CD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Currently there are no comments in this discussion, be the first to comment!
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...