[Q31-Q47] Get 100% Passing Success With True CCAK Exam! [Jan-2022]

Share

Get 100% Passing Success With True CCAK Exam! [Jan-2022] 

ISACA CCAK PDF Questions - Exceptional Practice To Certificate of Cloud Auditing Knowledge

NEW QUESTION 31
How can virtual machine communications bypass network security controls?

  • A. VM images can contain rootkits programmed to bypass firewalls
  • B. Most network security systems do not recognize encrypted VM traffic
  • C. The guest OS can invoke stealth mode
  • D. Hypervisors depend upon multiple network interfaces
  • E. VM communications may use a virtual network on the same hardware host

Answer: E

 

NEW QUESTION 32
Which layer is the most important for securing because it is considered to be the foundation for secure cloud operations?

  • A. Metastructure
  • B. Infostructure
  • C. Infrastructure
  • D. Datastructure
  • E. Applistructure

Answer: C

 

NEW QUESTION 33
How does running applications on distinct virtual networks and only connecting networksas needed help?

  • A. It enables you to configure applications around business groups
  • B. It provides dynamic and granular policies with less management overhead
  • C. It reduces hardware costs
  • D. It reduces the blast radius of a compromised system
  • E. It locks down access and provides stronger data security

Answer: D

 

NEW QUESTION 34
Which statement best describes why it is important to know how data is being accessed?

  • A. The devices used to access data use a variety of applications or clients and may have different security characteristics.
  • B. The device may affect data dispersion.
  • C. The devices used to access data may have differentownership characteristics.
  • D. The devices used to access data use a variety of operating systems and may have different programs installed on them.
  • E. The devices used to access data have different storage formats.

Answer: A

 

NEW QUESTION 35
Cloud applications can use virtual networks and other structures, for hyper-segregated environments.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 36
Sending data to a provider's storage over an API is likely as much morereliable and secure than setting up your own SFTP server on a VM in the same provider

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 37
Which governance domain deals with evaluating how cloudcomputing affects compliance with internal security policies and various legal requirements, such as regulatory and legislative?

  • A. Governance and Enterprise Risk Management
  • B. Information Governance
  • C. Legal Issues: Contracts and Electronic Discovery
  • D. Compliance and Audit Management
  • E. Infrastructure Security

Answer: D

 

NEW QUESTION 38
Which of the following should be an IS auditor's GREATEST concern when reviewing an outsourcing arrangement with a third-party cloud service provider to host personally identifiable data?

  • A. Fees are charged based on the volume of data stored by the host.
  • B. The organization's servers are not compatible with the third party's infrastructure
  • C. The outsourcing contract does not contain a right-to-audit clause.
  • D. The data is not adequately segregated on the host platform.

Answer: D

 

NEW QUESTION 39
Which concept is a mapping of an identity, including roles, personas, and attributes, to an authorization?

  • A. Federated Identity Management
  • B. Authoritative source
  • C. Authentication
  • D. Access control
  • E. Entitlement

Answer: E

 

NEW QUESTION 40
During a review, an IS auditor notes that an organization's marketing department has purchased a cloud-based software application without following the procurement process. What should the auditor do FIRST?

  • A. Review the procurement process.
  • B. Escalate to senior management.
  • C. Perform a risk analysis.
  • D. Review the business impact analysis (BIA).

Answer: C

 

NEW QUESTION 41
Which of the following is NOT normally a method for detecting and preventing data migration into the cloud?

  • A. URL filters
  • B. Database Activity Monitoring
  • C. Cloud Access and Security Brokers (CASB)
  • D. Data Loss Prevention
  • E. Intrusion Prevention System

Answer: E

 

NEW QUESTION 42
Which of thefollowing items is NOT an example of Security as a Service (SecaaS)?

  • A. Intrusion detection
  • B. Provisioning
  • C. Authentication
  • D. Spam filtering
  • E. Web filtering

Answer: B

 

NEW QUESTION 43
Which of the following should be of GREATEST concern to an IS auditor reviewing actions taken during a forensic investigation?

  • A. An image copy of the attacked system was not taken.
  • B. The investigation report does not indicate a conclusion.
  • C. The proper authorities were not notified.
  • D. The handling procedures of the attacked system are not documented.

Answer: C

 

NEW QUESTION 44
An IS department is evaluated monthly on its cost-revenue ratio user satisfaction rate, and computer downtime This is BEST zed as an application of.

  • A. risk framework
  • B. control self-assessment (CSA)
  • C. value chain analysis
  • D. balanced scorecard

Answer: D

 

NEW QUESTION 45
Big data includes high volume, high variety, and high velocity.

  • A. False
  • B. True

Answer: B

 

NEW QUESTION 46
Which of the following is a perceived advantage or disadvantage of managing enterprise risk for cloud deployments?

  • A. Increased need, but reduction in costs, for managing risks accepted by the cloud provider.
  • B. Greater reliance on contracts, audits, and assessments due to lack of visibility or management.
  • C. None of the above.
  • D. Decreased requirement for proactive management of relationship and adherence to contracts.
  • E. More physical control over assets and processes.

Answer: B

 

NEW QUESTION 47
......

CCAK dumps - TestsDumps - 100% Passing Guarantee: https://www.testsdumps.com/CCAK_real-exam-dumps.html

Fast, Hands-On CCAK exam: https://drive.google.com/open?id=1qaLMeopKr-G7c7bYBXhZjDyq1Ob-oF0g