ISC2 Certified Cloud Security Professional (CCSP) Practice Question

During negotiations with a multitenant SaaS provider, your legal team cites ISO/IEC 27050-2 guidance, stressing that the company must be able to preserve and later collect electronically stored information (ESI) if a litigation hold is issued under the U.S. Federal Rules of Civil Procedure. Which contractual clause most directly addresses this eDiscovery requirement?

  • The provider must replicate all customer backups across at least three geographic regions using immutable object storage.

  • The provider must, upon written notice of litigation, place an immediate hold on data destruction and deliver a forensically sound export of all requested tenant ESI-including metadata-within a defined period.

  • The provider must supply quarterly SOC 2 Type II reports covering the security and availability trust principles.

  • All data at rest must be encrypted with keys generated and managed exclusively by the provider.

ISC2 Certified Cloud Security Professional (CCSP)
Legal, Risk and Compliance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot