MANAGING CLOUD SECURITY - D320
QUESTIONS WITH CORRECT ANSWERS 2025
InternationalRStandardsROrganizationR(ISO)R-RCORRECTRANSWERR-
isRanRinternationalRstandardsRbodyRcomposedRofRrepresentativesRfromRvariousRstandardsRorganizations.
ISO/IECR27001R-RCORRECTRANSWERR-
StandardRonRmanagingRInformationRSecurity.RItRincludesRrequirementsRforRestablishingR,
implementing,Rmaintaining,RandRcontinuallyRimprovingRinformationRmanagement.
ISO/IECR27002R-RCORRECTRANSWERR-
providesRbestRpracticesRonRinformationRsecurityRcontrolsRforRthoseRattemptingRtoRbeRISO/IECR27001.
ISO/IECR27017R-RCORRECTRANSWERR-
createdRtoRsupplementRISO/IECR27002RtoRprovideRadditionalRsecurityRcontrolsRforRtheRcloud.
ISO/IECR27018:2014R
ISO/IECR27018:2019R-RCORRECTRANSWERR-
ITRSecurityRtechniques.RCodeRofRpracticeRforRprotectionRofRPIIRinRpublicRclouds.
ISO/IECR27034-1R-RCORRECTRANSWERR-
mandatesRaRframeworkRforRapplicationRsecurityRwithinRanRorganization.
ISO/IECR28000:2007R-RCORRECTRANSWERR-standardRforRensuringRsecurityRassuranceRinRtheRsupplyRchain.
ISO/IECR31000:2009R-RCORRECTRANSWERR-
standardRprovidingRindustryRindependentRprinciplesRandRguidelinesRonRriskRmanagement.
NISTR-RCORRECTRANSWERR-
NationalRInstituteRofRStandardsRandRTechnologyRisRanRagencyRofRtheRDepartmentRofRCommerceRwhoseRmis
sionRisRtoRpromoteRinnovationRandRindustrialRcompetitiveness.RItRalsoRcreatesRnumerousRstandardRandRreq
uirementsRforRtheRDoD,RFederalRGovernment,RandRgovernmentRcontractorsRrelatingRtoRCyberRsecurity.
, NISTRSPR800-37R-RCORRECTRANSWERR-
RiskRManagementRFrameworkRusingRaRlifeRcycleRapproachRforRsecurityRandRprivacy.
NISTRSPR800-53R-RCORRECTRANSWERR-
providesRsecurityRandRprivacyRcontrolsRforRinformationRsystemsRandRorganizations.
NISTRSPR800-92R-RCORRECTRANSWERR-GuideRtoRComputerRSecurityRLogRManagement
ISOR27034R-RCORRECTRANSWERR-
ThereRisRonlyRoneRONFRforRanRorganizationRbutRpotentiallyRasRmanyRANF'sRasRapplications.
-RApplicationRNormativeRFrameworkR(ANF)
-ROrganizationalRNormativeRFrameworkR(ONF)
ASHRAER-RAmericanRSocietyRofRHeating,RRefrigeratingRandRAir-ConditioningREngineersR-
RCORRECTRANSWERR-
isRanRAmericanRprofessionalRassociationRseekingRtoRadvanceRheating,Rventilation,RairRconditioningRandRrefr
igerationRsystemsRdesignRandRconstruction.
BibaR-RCORRECTRANSWERR-
anRaccessRcontrolRmodelRdesignedRtoRpreserveRdataRintegrity.RItRhasR3Rgoals.RMaintainRinternalRandRextern
alRconsistency;RpreventRunauthorizedRdataRmodificationRevenRbyRauthorizedRparties;RpreventRdataRmodific
ationRbyRunauthorizedRindividuals.
CapabilityRMaturityRModelR(CMM)R-RCORRECTRANSWERR-
isRaRdevelopmentRmodelRwhereRtheRmaturityRrelatesRtoRtheRformalityRandRoptimizationRofRprocesses.RWhe
nRappliedRtoRcloudRsecurityRitRwouldRfocusRonRthoseRaspectsRasRtheyRrelateRtoRcloudRsecurity.
ChildROnlineRProtectionRActR(COPA)R-RCORRECTRANSWERR-
AnRattemptRtoRrestrictRaccessRbyRminorsRtoRmaterialRdefinedRasRharmfulRtoRminors.RARpermanentRinjunctio
nRagainstRtheRlawRinR2009.
QUESTIONS WITH CORRECT ANSWERS 2025
InternationalRStandardsROrganizationR(ISO)R-RCORRECTRANSWERR-
isRanRinternationalRstandardsRbodyRcomposedRofRrepresentativesRfromRvariousRstandardsRorganizations.
ISO/IECR27001R-RCORRECTRANSWERR-
StandardRonRmanagingRInformationRSecurity.RItRincludesRrequirementsRforRestablishingR,
implementing,Rmaintaining,RandRcontinuallyRimprovingRinformationRmanagement.
ISO/IECR27002R-RCORRECTRANSWERR-
providesRbestRpracticesRonRinformationRsecurityRcontrolsRforRthoseRattemptingRtoRbeRISO/IECR27001.
ISO/IECR27017R-RCORRECTRANSWERR-
createdRtoRsupplementRISO/IECR27002RtoRprovideRadditionalRsecurityRcontrolsRforRtheRcloud.
ISO/IECR27018:2014R
ISO/IECR27018:2019R-RCORRECTRANSWERR-
ITRSecurityRtechniques.RCodeRofRpracticeRforRprotectionRofRPIIRinRpublicRclouds.
ISO/IECR27034-1R-RCORRECTRANSWERR-
mandatesRaRframeworkRforRapplicationRsecurityRwithinRanRorganization.
ISO/IECR28000:2007R-RCORRECTRANSWERR-standardRforRensuringRsecurityRassuranceRinRtheRsupplyRchain.
ISO/IECR31000:2009R-RCORRECTRANSWERR-
standardRprovidingRindustryRindependentRprinciplesRandRguidelinesRonRriskRmanagement.
NISTR-RCORRECTRANSWERR-
NationalRInstituteRofRStandardsRandRTechnologyRisRanRagencyRofRtheRDepartmentRofRCommerceRwhoseRmis
sionRisRtoRpromoteRinnovationRandRindustrialRcompetitiveness.RItRalsoRcreatesRnumerousRstandardRandRreq
uirementsRforRtheRDoD,RFederalRGovernment,RandRgovernmentRcontractorsRrelatingRtoRCyberRsecurity.
, NISTRSPR800-37R-RCORRECTRANSWERR-
RiskRManagementRFrameworkRusingRaRlifeRcycleRapproachRforRsecurityRandRprivacy.
NISTRSPR800-53R-RCORRECTRANSWERR-
providesRsecurityRandRprivacyRcontrolsRforRinformationRsystemsRandRorganizations.
NISTRSPR800-92R-RCORRECTRANSWERR-GuideRtoRComputerRSecurityRLogRManagement
ISOR27034R-RCORRECTRANSWERR-
ThereRisRonlyRoneRONFRforRanRorganizationRbutRpotentiallyRasRmanyRANF'sRasRapplications.
-RApplicationRNormativeRFrameworkR(ANF)
-ROrganizationalRNormativeRFrameworkR(ONF)
ASHRAER-RAmericanRSocietyRofRHeating,RRefrigeratingRandRAir-ConditioningREngineersR-
RCORRECTRANSWERR-
isRanRAmericanRprofessionalRassociationRseekingRtoRadvanceRheating,Rventilation,RairRconditioningRandRrefr
igerationRsystemsRdesignRandRconstruction.
BibaR-RCORRECTRANSWERR-
anRaccessRcontrolRmodelRdesignedRtoRpreserveRdataRintegrity.RItRhasR3Rgoals.RMaintainRinternalRandRextern
alRconsistency;RpreventRunauthorizedRdataRmodificationRevenRbyRauthorizedRparties;RpreventRdataRmodific
ationRbyRunauthorizedRindividuals.
CapabilityRMaturityRModelR(CMM)R-RCORRECTRANSWERR-
isRaRdevelopmentRmodelRwhereRtheRmaturityRrelatesRtoRtheRformalityRandRoptimizationRofRprocesses.RWhe
nRappliedRtoRcloudRsecurityRitRwouldRfocusRonRthoseRaspectsRasRtheyRrelateRtoRcloudRsecurity.
ChildROnlineRProtectionRActR(COPA)R-RCORRECTRANSWERR-
AnRattemptRtoRrestrictRaccessRbyRminorsRtoRmaterialRdefinedRasRharmfulRtoRminors.RARpermanentRinjunctio
nRagainstRtheRlawRinR2009.