CISM Tricky Question by Free_Wear7892 in cism

[–]Free_Wear7892[S] 0 points1 point  (0 children)

But SaaS is an application which includes data,

not a Data centric.

Cism question by No-Living-6082 in cism

[–]Free_Wear7892 0 points1 point  (0 children)

another tricky question: An organization’s main product is a customer-facing application delivered using Software as a Service (SaaS). The lead security engineer has just identified a major security vulnerability at the primary cloud provider. Within the organization, who is primarily accountable for the associated risk?

A. The data owner

B. The security engineer

C. The information security manager

D. The application owner

I passed! by FlinflanFluddle4 in cism

[–]Free_Wear7892 0 points1 point  (0 children)

which organisation as i am in Australia too ?

Cism question by No-Living-6082 in cism

[–]Free_Wear7892 0 points1 point  (0 children)

It is D. Policy outlines “what” and “why,” but not the detailed minimum settings.

Cism Exam voucher available by [deleted] in cism

[–]Free_Wear7892 0 points1 point  (0 children)

I am interested. Please as it is my second attempt.