Governance Flashcards

1
Q

ISO27002

A

Security controls framework

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

27017/18

A

Cloud management framework

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

ISO 27701

A

Personal Data and privacy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

ISO 31000

A

Best for overall risk management assessment not just security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

ISO 21000

A

Cyber security framework

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

SOC 2
CIAP

A

Service organisational controls - Evaluates internal controls for storing customer data
Confidentiality,
Integrity,
Availability,
Privacy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

SSAE

A

Statement of standards for attestation - is a certified audit to ensure consumers that cloud providers are meeting professional standards

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SOC2 Type 1

A

Assess the design and implementation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

SOC2 Type 2

A

Assess the effectiveness of the design between 6 - 12 months

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

SOC 3

A

Is a high level certification to clarify compliance with SOC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly