exam questions

Exam CCAK All Questions

View all questions & answers for the CCAK exam

Exam CCAK topic 1 question 199 discussion

Actual exam question from Isaca's CCAK
Question #: 199
Topic #: 1
[All CCAK Questions]

The CSA STAR maturity model assessment should summarize:

  • A. the security posture of the cloud provider.
  • B. the effectiveness of operating controls.
  • C. the strengths and weaknesses of a cloud service provider’s processes.
  • D. ISO/IEC 27001:2013 control objective status.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Auditor2020
1 month, 1 week ago
Selected Answer: C
C. the strengths and weaknesses of a cloud service provider’s processes. The CSA STAR (Security, Trust, Assurance, and Risk) maturity model assessment is designed to evaluate the maturity of a cloud service provider's security processes and controls. The assessment provides an in-depth analysis of the strengths and weaknesses of these processes, helping stakeholders understand how well the provider's security practices align with industry standards and best practices. This understanding helps organizations make informed decisions about the security posture and reliability of the cloud services they intend to use. While the assessment may touch on security posture and control effectiveness, its primary focus is on evaluating process maturity and identifying areas for improvement.
upvoted 1 times
...
sai_murthy
8 months, 3 weeks ago
Selected Answer: C
P# 376 The CSA STAR Certification is a rigorous third-party independent assessment of the security of a CSP, leveraging the requirements of the ISO/IEC 27001:2013 management system standard with the CSA Cloud Controls Matrix. In addition, CSA STAR has a maturity model assessment that is internal to the organization. Because not all processes are created equal, this report outlines strengths and weaknesses, allowing an organization to concentrate on improving areas of weakness and exploiting strengths. The levels—bronze, silver and gold—represent how well the process is managed but have no connection to how secure an organization.
upvoted 2 times
...
ats20
10 months, 2 weeks ago
Selected Answer: C
The CSA STAR maturity model assessment summarizes the strengths and weaknesses of a cloud service provider’s processes. The assessment measures the maturity of the organization against CSA’s proprietary maturity model criteria, pointing out the strengths and weaknesses of the processes using the Cloud Controls Matrix (CCM) domains as the measurables.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago