In the context of incident response, which phase involves alerts validation to reduce false positives and estimates the incident's scope?
Which of the following best describes the purpose of cloud security control objectives?
What is the primary purpose of the CSA Security, Trust, Assurance, and Risk (STAR) Registry?
How can Identity and Access Management (IAM) policies on keys ensure adherence to the principle of least privilege?
Which benefit of automated deployment pipelines most directly addresses continuous security and reliability?
CCM: A company wants to use the IaaS offering of some CSP. Which of the following options for using CCM is NOT suitable for the company as a cloud customer?
Which term is used to describe the use of tools to selectively degrade portions of the cloud to continuously test business continuity?
In the Incident Response Lifecycle, which phase involves identifying potential security events and examining them for validity?
Which of the following best describes the multi-tenant nature of cloud computing?