Certified Cloud Security Professional – CCSP – Question416

Every security program and process should have which of the following?

A.
Severe penalties
B. Multifactor authentication
C. Foundational policy
D. Homomorphic encryption

Correct Answer: C

Explanation:

Explanation: Policy drives all programs and functions in the organization; the organization should not conduct any operations that don’t have a policy governing them. Penalties may or may not be an element of policy, and severity depends on the topic. Multifactor authentication and homomorphic encryption are red herrings here.