Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 1002 discussion

Actual exam question from Isaca's CISA
Question #: 1002
Topic #: 1
[All CISA Questions]

Which of the following is MOST important for an organization to consider when planning to outsource data storage to a third-party provider?

  • A. The cost of delivering the service
  • B. The country in which the provider operates
  • C. The classification levels of the stored data
  • D. The skill set and experience of the provider
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
choboanon
2 weeks, 3 days ago
Selected Answer: B
Local laws and regulations beat out classification. Great, you're data is classified. Too bad where the data is stored doesn't give a fuck how it's classified and where first adhere to its own local laws and regulations, not your nice classifications.
upvoted 2 times
...
PurpleParrot
3 months, 1 week ago
Selected Answer: B
Understanding the regulatory environment in the provider’s country is fundamental to ensuring that data storage practices align with legal and compliance requirements. This consideration helps mitigate risks related to data breaches, legal issues, and regulatory non-compliance.
upvoted 3 times
...
FAGFUR
1 year ago
The classification levels of the stored data are often considered the most critical factor when outsourcing data storage to a third-party provider, as it directly relates to data security and compliance requirements.
upvoted 2 times
...
SuperMax
1 year, 1 month ago
Selected Answer: C
C. The classification levels of the stored data When planning to outsource data storage to a third-party provider, the most important consideration is the classification levels of the stored data. Different data may have varying levels of sensitivity and security requirements, so it's crucial to ensure that the third-party provider can meet the necessary security and compliance standards for handling the specific types of data your organization deals with. This ensures the protection and confidentiality of your data. While cost, the provider's location, and their skill set and experience are important factors, they should be evaluated in the context of the data's security and compliance needs.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...