ISO 27017:2015 - Cloud Security Auditor Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

A cloud service provider (CSP) operating under ISO 27017:2015 discovers a significant data breach affecting the personal information of multiple customers hosted on its platform. The CSP immediately activates its pre-defined incident response plan, which includes isolating the affected systems, conducting a forensic analysis to determine the scope and cause, and notifying the relevant supervisory authorities and affected customers within the legally mandated timeframe. The plan also outlines steps for remediation and post-incident review to prevent recurrence. Which core principle of ISO 27017:2015 is most directly demonstrated by the CSP\'s actions in this scenario?

Effective information security incident management
Secure development and maintenance of cloud services
Compliance with legal and contractual requirements for data protection
Implementation of robust access control mechanisms

About the ISO 27017:2015 - Cloud Security Auditor Certification

These free practice questions are designed to help you assess your readiness for the ISO 27017:2015 - Cloud Security Auditor exam by ISO. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.