Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Isaca CCAK Exam - Topic 3 Question 2 Discussion

Which of the following would be the MOST critical finding of an application security and DevOps audit?
B) Application architecture and configurations did not consider security measures.
A) The organization is not using a unified framework to integrate cloud compliance with regulatory requirements.
C) Outsourced cloud service interruption, breach or loss of data stored at the cloud service provider.
D) Certifications with global security standards specific to cloud are not reviewed and the impact of noted findings are not assessed.

Isaca CCAK Exam - Topic 3 Question 2 Discussion

Actual exam question for Isaca's CCAK exam
Question #: 2
Topic #: 3
[All CCAK Questions]

Which of the following would be the MOST critical finding of an application security and DevOps audit?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
Shakira
8 months ago
Wait, are people really not considering security in their architecture? That’s surprising!
upvoted 0 times
...
Micheal
9 months ago
D seems like a big oversight, how can you not review those?
upvoted 0 times
...
Mammie
9 months ago
C sounds alarming, data loss is a huge deal!
upvoted 0 times
...
Winfred
9 months ago
I think A is pretty critical too, compliance is key.
upvoted 0 times
...
Darrin
9 months ago
Definitely B, security measures are a must!
upvoted 0 times
...
Tyisha
9 months ago
I recall a practice question that mentioned the importance of reviewing certifications, so option D seems significant too, but I’m not sure if it’s the most critical.
upvoted 0 times
...
Alex
9 months ago
I feel like option C about outsourced cloud service interruptions is really serious, especially since it can lead to data breaches.
upvoted 0 times
...
Lashawnda
9 months ago
I'm a bit unsure, but I think the lack of a unified framework in option A could lead to major compliance issues.
upvoted 0 times
...
Kayleigh
9 months ago
I remember we discussed how critical it is for application architecture to incorporate security measures, so I think option B might be the most important.
upvoted 0 times
...
Laurel
9 months ago
This one seems pretty straightforward. I'm going to go with B - Authentication, since that's a common security control to prevent unauthorized access.
upvoted 0 times
...
Cherry
9 months ago
This looks like a pretty straightforward Horizon desktop question. I think I can handle this one.
upvoted 0 times
...
Omer
10 months ago
I'm feeling pretty confident about this one. I think option B, using Pub/Sub and Dataflow, could be a good way to tackle the preprocessing and high-throughput prediction requirements.
upvoted 0 times
...
Lemuel
10 months ago
Hmm, I'm a bit unsure about the details here. I know the 'post' section is used for post-pipeline tasks, but I can't remember if a failure in the 'post' section itself would mark the whole pipeline as unsuccessful. I'll need to review the documentation on that.
upvoted 0 times
...

Save Cancel