Certified Information Security Manager (CISM) — Question 1189
Which of the following BEST mitigates the risk or information loss caused by a cloud service provider becoming insolvent?
Answer options
- A. Contractual provisions for the right to audit
- B. Effective data loss prevention (DLP) controls
- C. Contractual provisions for data repatriation
- D. The purchasing of cybersecurity insurance
Correct answer: C
Explanation
The correct answer is C, as having contractual provisions for data repatriation ensures that you can retrieve your data in the event of the provider's insolvency. Options A and D do not directly address the issue of data recovery, while B is focused on preventing data loss rather than ensuring that data can be retrieved from a failing provider.