ISC2 Certified Cloud Security Professional (CCSP) Practice Question

A mid-size healthcare provider needs to place its electronic health record (EHR) workloads in an environment that is accessible only to U.S. organizations subject to HIPAA. It also wants several regional hospitals and research universities-each facing the same regulatory obligations-to access that environment for joint analytics, without the overhead of building separate private interconnects to every participant. Which cloud deployment model best satisfies these shared governance and compliance requirements?

  • Adopt a multi-cloud strategy that distributes the EHR system across two or more public cloud providers.

  • Host the application in a regional public cloud and rely on encryption and IAM policies to enforce HIPAA compliance.

  • Deploy the EHR system in a community cloud dedicated to HIPAA-regulated organizations.

  • Use a hybrid cloud that combines the provider's private data center with a public cloud for research workloads.

ISC2 Certified Cloud Security Professional (CCSP)
Cloud Concepts, Architecture and Design
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot