exam questions

Exam CCSP All Questions

View all questions & answers for the CCSP exam

Exam CCSP topic 1 question 489 discussion

Actual exam question from ISC's CCSP
Question #: 489
Topic #: 1
[All CCSP Questions]

The baseline should cover which of the following?

  • A. Data breach alerting and reporting
  • B. All regulatory compliance requirements
  • C. As many systems throughout the organization as possible
  • D. A process for version control
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️
The more systems that be included in the baseline, the more cost-effective and scalable the baseline is. The baseline does not deal with breaches or version control; those are the provinces of the security office and CMB, respectively. Regulatory compliance might (and usually will) go beyond the baseline and involve systems, processes, and personnel that are not subject to the baseline.

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
goodlife
Highly Voted 2 years, 1 month ago
Really real exam question? It is from the book: CCSP (ISC)2 Certified Cloud Security Professional Official Study Guide (SYBEX)
upvoted 6 times
...
MaciekMT
Most Recent 1 month, 3 weeks ago
Selected Answer: C
A baseline in security and compliance refers to a standard set of configurations, policies, and controls that should be applied consistently across as many systems as possible within an organization. The goal is to ensure uniform security, stability, and compliance across the IT environment. Why Not the Others? A. Data breach alerting and reporting → Important for security monitoring, but not the primary focus of a baseline, which sets minimum standards for system configurations. B. All regulatory compliance requirements → Compliance frameworks differ based on industry, region, and data type, making it impractical for a baseline to cover all requirements. D. A process for version control → Version control is crucial for tracking changes, but a baseline focuses on system-wide configurations and policies, not just software development or document management.
upvoted 1 times
...
akg001
4 months, 3 weeks ago
Selected Answer: C
C. As many systems throughout the organization as possible
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago