Certificate of Cloud Auditing Knowledge (CCAK) — Question 101
Which of the following BEST describes the Center for Internet Security (CIS) benchmarks applied to a cloud service provider?
Answer options
- A. Best practices for the tuning of performance in cloud service providers’ services
- B. Best practices for the secure configuration of the cloud service provider services
- C. Comparisons of the performance obtained from the cloud service providers
- D. Comparisons of the security capabilities provided by the cloud service providers
Correct answer: B
Explanation
The correct answer, B, highlights that CIS benchmarks focus on secure configurations, ensuring that cloud services are set up to minimize vulnerabilities. Option A is incorrect as it pertains to performance tuning rather than security. Options C and D discuss performance and security comparisons, which do not accurately describe the purpose of CIS benchmarks.