exam questions

Exam CCAK All Questions

View all questions & answers for the CCAK exam

Exam CCAK topic 1 question 173 discussion

Actual exam question from Isaca's CCAK
Question #: 173
Topic #: 1
[All CCAK Questions]

Why is it important for the individuals in charge of cloud compliance to understand the organization’s past?

  • A. To determine the risk profile of the organization
  • B. To determine the current state of the organization’s compliance
  • C. To verify whether the measures implemented from the lessons learned are effective
  • D. To address any open findings from previous external audits
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
84501e1
19 hours, 3 minutes ago
Selected Answer: B
B. To determine the current state of the organization’s compliance Understanding the past of the organization helps the team or individual in charge of cloud compliance to realize the history behind the current state of the organization compliance.
upvoted 1 times
...
sai_murthy
1 year, 3 months ago
Selected Answer: B
CCAK P# 112 Understanding the past of the organization helps the team or individual in charge of cloud compliance to realize the history behind the current state of the organization compliance. Some key points to consider are: • What is the current state of internal expertise in terms of audit and preparedness? • What does the existing compliance program look like? • Has the company gone through any audit in the past? If so, are the lessons learned applied today? (Is there a dedicated security program, internal or external, managing security decisions?) • If the organization is multinational, does the compliance program make accommodations for independent country requirements? How does the organization ensure that it maintains compliance with independent country requirements? • Has the organization been charged or penalized for previous compliance or legal violations?
upvoted 4 times
...
ats20
1 year, 5 months ago
I would think the answer is A: To determine the risk profile of the organization.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...