ISC2 Certified Cloud Security Professional (CCSP) Practice Question

A multinational enterprise is moving several workloads to both a public IaaS platform and a SaaS customer-relationship system. The security team has completed an inventory of all data stores and documented how information flows between cloud services and on-premises systems. To ensure the forthcoming data classification scheme supports business objectives and complies with international privacy laws, which activity should the team perform next?

  • Adopt the public cloud provider's predefined storage class names as the organization's new classification levels.

  • Identify all legal, regulatory, and contractual requirements that dictate how different data elements must be handled.

  • Apply client-side encryption with customer-managed keys to every dataset, deferring classification until after migration.

  • Label every dataset with the organization's highest sensitivity level to avoid misclassification risks.

ISC2 Certified Cloud Security Professional (CCSP)
Cloud Data Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot