Certificate of Cloud Auditing Knowledge (CCAK) — Question 260
Which of the following steps should be performed FIRST to ensure that privacy requirements of a client company are complied with by the cloud service provider?
Answer options
- A. Review company policies and procedures
- B. Review cloud service agreements
- C. Review privacy guidance and best practices
- D. Review legal and regulatory standards
Correct answer: B
Explanation
The correct answer is B because reviewing cloud service agreements is essential to understanding the specific privacy obligations and commitments made by the provider. The other options, while important, focus on broader contexts or guidelines that do not directly address the contractual relationship and specific privacy terms outlined in the service agreements.