During an audit it was identified that a critical application hosted in an off-premises cloud is not part of the organization’s DRP (Disaster Recovery Plan). Management stated that it is responsible for ensuring that the cloud service provider (CSP) has a plan that is tested annually. What should be the auditor’s NEXT course of action?
KarthikeyanTK
Highly Voted 2 years, 1 month agoosys
1 year, 1 month agoAuditor2020
Most Recent 3 months, 3 weeks agoats20
1 year, 2 months agoAlfredP
1 year, 7 months agoYellowSky002
1 year, 7 months agoME79
1 year, 11 months agoPCTAN
2 years, 4 months ago