OA ASSESSMENT SCRIPT 2026 VERIFIED
ANSWERS COMPREHENSIVE REVIEW
◉ NIST standard number that lists accredited and outmoded
cryptosystems
Answer: FIPS 140-2
◉ customer may be unable to leave, migrate, or transfer to an
alternate provider due to technical or non-technical constraints.
Answer: vendor lock-m
◉ What is cloud migration?
Answer: Process of transitioning part of a company's data or
services from onsite premises to the cloud
◉ What is cloud portability?
Answer: Move applications and data between cloud providers
◉ What offers a degree of assurance that nobody w/o authorization
will be able to access other's data?
Answer: Encryption
,◉ If a cloud customer wants a secure, isolated sandbox in order to
conduct software development and testing, which cloud service
model would probably be best?
Answer: PaaS
◉ What technology has NOT made cloud service viable?
Answer: Smart hubs
◉ What determines the critical paths, processes, and assets of an
organization?
Answer: BIA
◉ Fully-operational environment with very little maintenance or
administration necessary, which cloud service model would
probably be best?
Answer: PaaS
◉ customer is unable to recover or access their own data due to the
cloud provider going into bankruptcy or otherwise leaving the
market.
Answer: Vendor lock-out
,◉ What are four examples of things to know to decide how to handle
risks within an org?
Answer: Inventory of all assets
Valuation of each asset
Critical paths, processes, and assets
Clear understanding of risk appetite
◉ T/F: Assets are only tangible items.
Answer: False. Assets are everything owned or controlled by an org.
◉ The process of evaluating assets?
Answer: Business Impact Analysis(BIA)
◉ What is criticality?
Answer: Something an org could not operate or exist without
◉ What are 5 examples of criticality for an org
Answer: Tangible assets
Intangible assets
Processes
Data paths
Personnel
, ◉ In risk, what is the avoidance method?
Answer: Avoiding high risk
◉ In risk, what is the acceptance method?
Answer: Acceptable level of risk
◉ In risk, what is an example of the avoidance method?
Answer: Insurance
◉ In risk, what is the mitigation method?
Answer: Controls or countermeasures
◉ Assets can be what?
Answer: Tangible
Intangible
Personnel
◉ What does Business Impact Analysis do?
Answer: Defines which of the assets provide the intrinsic value of an
organization.