Certificate of Cloud Auditing Knowledge (CCAK) — Question 84
Which of the following is MOST important to ensure effective cloud application controls are maintained in an organization?
Answer options
- A. Exception reporting
- B. Third-party vendor involvement
- C. Application team internal review
- D. Control self-assessment (CSA)
Correct answer: D
Explanation
The correct answer is D, as Control Self-Assessment (CSA) is essential for organizations to regularly evaluate and improve their internal controls over applications. While exception reporting, third-party vendor involvement, and internal reviews are important, they do not provide the same comprehensive approach to ensuring ongoing compliance and effectiveness of the control environment like CSA does.