CCM: Which of the following statement about CSA's CCM and Security Guidance is False?
CCM: Which of the following statement about CSA's CCM and Security Guidance is False?
CSA's Security Guidance provides a set of best practices and recommendations on how to perform cloud security measures, while the Cloud Controls Matrix (CCM) lists specific cloud security controls and maps them to various security and compliance standards, indicating what controls should be implemented. Therefore, it is false to say that the Security Guidance tells you WHAT to do and the CCM tells you HOW to do it.
Agee with Mial: Statement B is FALSE, statement D is TRUE - therefore the correct choice here is B
The answer is B - The Cloud Controls Matrix (CCM), lists cloud security controls and maps them to multiple security andcompliance standards. The CCM can also be used to document security responsibilities (WHAT to do).CSA’s Security Guidance provides a set of best practices and recommendations. (HOW to do it).Source: Security Guidance for Critical Areas of Focus in Cloud Computing V4.0