CISM Certified Information Security Manager – Question1141

When defining a service level agreement (SLA) regarding the level of data confidentiality that is handled by a third-party service provider, the BEST indicator of compliance would be the:

A.
access control matrix.
B. encryption strength.
C. authentication mechanism.
D. data repository.

Correct Answer: A

Explanation:

Explanation:
The access control matrix is the best indicator of the level of compliance with the service level agreement (SLA) data confidentiality clauses. Encryption strength, authentication mechanism and data repository might be defined in the SLA but are not confidentiality compliance indicators.