ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
Your company is migrating its customer-relationship management system to a Software as a Service (SaaS) provider. As the security architect, you must clarify the shared-responsibility model with the vendor. Which control will remain primarily the responsibility of your organization under the SaaS delivery model?
Managing physical security and redundant power for the cloud provider's data center
Defining and enforcing data classification and access control policies for customer records kept in the SaaS environment
Hardening and monitoring the hypervisor that hosts the SaaS platform
Applying security patches to the SaaS application and its underlying middleware components
Under the SaaS model, the cloud provider operates and secures the physical facilities, network, servers, storage, virtualization layer, operating system, and the application itself. The customer, however, retains responsibility for the data it stores or processes in the service and for controlling who can access that data. Patching the application and middleware, maintaining storage redundancy, and hardening the hypervisor are all handled by the SaaS provider, not by the subscribing organization.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the shared-responsibility model in cloud computing?
Open an interactive chat with Bash
What is data classification, and why is it important in a SaaS environment?
Open an interactive chat with Bash
How do access control policies work within a SaaS environment?
Open an interactive chat with Bash
What is the shared-responsibility model in cloud computing?
Open an interactive chat with Bash
Why isn't the customer responsible for physical security in the SaaS model?
Open an interactive chat with Bash
What is the role of data classification in the SaaS shared-responsibility model?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Architecture and Design
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .