Skip to content
CAS-005
Governance, Risk, and Compliance
medium
Question 10 of 20

A security architect is reviewing a third-party SaaS provider contract. The provider will process regulated financial data on behalf of the organization. Which risk management concern is MOST critical to address before signing?

AVerifying the provider's uptime SLA exceeds 99.9%
BAssessing the provider's third-party risk and data handling practices
CRequiring the provider to use the same SIEM platform as the organization
DConfirming the provider supports multi-factor authentication

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion