ISC2 Certified Cloud Security Professional (CCSP) Practice Question

While negotiating a contract with a cloud-based email provider, a multinational corporation explains that ongoing litigation in several jurisdictions may require it to place legal holds and later produce mailbox contents with full metadata. To minimize the risk that such cloud-hosted evidence is rejected by a court, which contractual requirement is MOST important to include, in line with ISO/IEC 27050 and Cloud Security Alliance eDiscovery guidance?

  • A requirement that all email data be stored exclusively within the corporation's home country.

  • A contractual right for the customer to perform annual penetration tests against the provider's infrastructure.

  • A service-level agreement guaranteeing 99.999 percent email availability and rapid recovery from outages.

  • A clause obligating the provider to preserve requested data and maintain verifiable chain-of-custody records from collection through production.

ISC2 Certified Cloud Security Professional (CCSP)
Legal, Risk and Compliance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot