Certified Information Systems Auditor (CISA) — Question 252
Which of the following methods BEST enforces data leakage prevention in a multi-tenant cloud environment?
Answer options
- A. Monitoring tools are configured to alert in case of downtime.
- B. A comprehensive security review is performed every quarter.
- C. Data for different tenants is segregated by database schema
- D. Tenants are required to implement data classification policies.
Correct answer: C
Explanation
The correct answer, C, is appropriate because segregating data by database schema ensures that the information of different tenants is kept separate, reducing the risk of data leakage. Options A and B focus on monitoring and reviews, which do not directly prevent data leakage, while option D relies on tenants' compliance, which may not be enforceable.