Certificate of Cloud Auditing Knowledge (CCAK) — Question 202
Which of the following is the BEST way for a client to enforce a policy violation committed by a cloud service provider (CSP)?
Answer options
- A. The violation is agreed upon and documented.
- B. Nothing can be done to enforce violations as this is a cloud service.
- C. The violation is agreed to verbally by the CSP.
- D. Violations will be automatically enforced so no action is needed.
Correct answer: A
Explanation
The correct answer is A because having a documented agreement about the violation provides a clear basis for enforcement actions, establishing accountability. Options B and D incorrectly assert that no enforcement is possible or that it happens automatically, while option C lacks the necessary formal documentation to be effective.