🔥 3-day streak
ISACA CRISC — Certified in Risk and Information Systems Control13 / 150
Question 13 of 150
An organization is migrating a customer-facing application to a public cloud provider using an Infrastructure-as-a-Service (IaaS) model. During the risk assessment, the risk practitioner notices that the project team assumes the cloud provider will handle all security patching, including the guest operating systems and application layers. Which action should the risk practitioner recommend FIRST to address this concern?
Reviewed for accuracy · Report an issueNext question