
Get 100% Passing Success With True CCAK Exam! [Jan-2022]
ISACA CCAK PDF Questions - Exceptional Practice To Certificate of Cloud Auditing Knowledge
NEW QUESTION 31
How can virtual machine communications bypass network security controls?
- A. VM images can contain rootkits programmed to bypass firewalls
- B. Most network security systems do not recognize encrypted VM traffic
- C. The guest OS can invoke stealth mode
- D. Hypervisors depend upon multiple network interfaces
- E. VM communications may use a virtual network on the same hardware host
Answer: E
NEW QUESTION 32
Which layer is the most important for securing because it is considered to be the foundation for secure cloud operations?
- A. Metastructure
- B. Infostructure
- C. Infrastructure
- D. Datastructure
- E. Applistructure
Answer: C
NEW QUESTION 33
How does running applications on distinct virtual networks and only connecting networksas needed help?
- A. It enables you to configure applications around business groups
- B. It provides dynamic and granular policies with less management overhead
- C. It reduces hardware costs
- D. It reduces the blast radius of a compromised system
- E. It locks down access and provides stronger data security
Answer: D
NEW QUESTION 34
Which statement best describes why it is important to know how data is being accessed?
- A. The devices used to access data use a variety of applications or clients and may have different security characteristics.
- B. The device may affect data dispersion.
- C. The devices used to access data may have differentownership characteristics.
- D. The devices used to access data use a variety of operating systems and may have different programs installed on them.
- E. The devices used to access data have different storage formats.
Answer: A
NEW QUESTION 35
Cloud applications can use virtual networks and other structures, for hyper-segregated environments.
- A. False
- B. True
Answer: B
NEW QUESTION 36
Sending data to a provider's storage over an API is likely as much morereliable and secure than setting up your own SFTP server on a VM in the same provider
- A. False
- B. True
Answer: B
NEW QUESTION 37
Which governance domain deals with evaluating how cloudcomputing affects compliance with internal security policies and various legal requirements, such as regulatory and legislative?
- A. Governance and Enterprise Risk Management
- B. Information Governance
- C. Legal Issues: Contracts and Electronic Discovery
- D. Compliance and Audit Management
- E. Infrastructure Security
Answer: D
NEW QUESTION 38
Which of the following should be an IS auditor's GREATEST concern when reviewing an outsourcing arrangement with a third-party cloud service provider to host personally identifiable data?
- A. Fees are charged based on the volume of data stored by the host.
- B. The organization's servers are not compatible with the third party's infrastructure
- C. The outsourcing contract does not contain a right-to-audit clause.
- D. The data is not adequately segregated on the host platform.
Answer: D
NEW QUESTION 39
Which concept is a mapping of an identity, including roles, personas, and attributes, to an authorization?
- A. Federated Identity Management
- B. Authoritative source
- C. Authentication
- D. Access control
- E. Entitlement
Answer: E
NEW QUESTION 40
During a review, an IS auditor notes that an organization's marketing department has purchased a cloud-based software application without following the procurement process. What should the auditor do FIRST?
- A. Review the procurement process.
- B. Escalate to senior management.
- C. Perform a risk analysis.
- D. Review the business impact analysis (BIA).
Answer: C
NEW QUESTION 41
Which of the following is NOT normally a method for detecting and preventing data migration into the cloud?
- A. URL filters
- B. Database Activity Monitoring
- C. Cloud Access and Security Brokers (CASB)
- D. Data Loss Prevention
- E. Intrusion Prevention System
Answer: E
NEW QUESTION 42
Which of thefollowing items is NOT an example of Security as a Service (SecaaS)?
- A. Intrusion detection
- B. Provisioning
- C. Authentication
- D. Spam filtering
- E. Web filtering
Answer: B
NEW QUESTION 43
Which of the following should be of GREATEST concern to an IS auditor reviewing actions taken during a forensic investigation?
- A. An image copy of the attacked system was not taken.
- B. The investigation report does not indicate a conclusion.
- C. The proper authorities were not notified.
- D. The handling procedures of the attacked system are not documented.
Answer: C
NEW QUESTION 44
An IS department is evaluated monthly on its cost-revenue ratio user satisfaction rate, and computer downtime This is BEST zed as an application of.
- A. risk framework
- B. control self-assessment (CSA)
- C. value chain analysis
- D. balanced scorecard
Answer: D
NEW QUESTION 45
Big data includes high volume, high variety, and high velocity.
- A. False
- B. True
Answer: B
NEW QUESTION 46
Which of the following is a perceived advantage or disadvantage of managing enterprise risk for cloud deployments?
- A. Increased need, but reduction in costs, for managing risks accepted by the cloud provider.
- B. Greater reliance on contracts, audits, and assessments due to lack of visibility or management.
- C. None of the above.
- D. Decreased requirement for proactive management of relationship and adherence to contracts.
- E. More physical control over assets and processes.
Answer: B
NEW QUESTION 47
......
CCAK dumps - TestsDumps - 100% Passing Guarantee: https://www.testsdumps.com/CCAK_real-exam-dumps.html
Fast, Hands-On CCAK exam: https://drive.google.com/open?id=1qaLMeopKr-G7c7bYBXhZjDyq1Ob-oF0g
