Certified Information Systems Auditor (CISA) — Question 309
Which of the following would BEST help to ensure the availability of data stored with a cloud provider?
Answer options
- A. Confirming the cloud provider has a disaster recovery site
- B. Requiring the provider to conduct daily backups
- C. Defining service level agreements (SLAs) in the contract
- D. Defining the reporting process and format
Correct answer: C
Explanation
Defining service level agreements (SLAs) in the contract is crucial because it outlines the expectations and commitments regarding data availability between the customer and the provider. While having a disaster recovery site and daily backups are important, SLAs provide a formalized assurance of service levels. The reporting process is less relevant to data availability and does not directly address the core concern.