Certificate of Cloud Security Knowledge (CCSK) — Question 130
To understand their compliance alignments and gaps with a cloud provider, what must cloud customers rely on?
Answer options
- A. Provider documentation
- B. Provider run audits and reports
- C. Third-party attestations
- D. Provider and consumer contracts
- E. EDiscovery tools
Correct answer: C
Explanation
The correct answer is C, as third-party attestations provide an independent verification of compliance which is crucial for understanding gaps and alignments. Options A and B may offer insights into the provider's practices, but they do not provide an objective assessment. Option D focuses on contracts that may not cover all compliance aspects, while option E relates to data management rather than compliance evaluation.