From the course: Cloud Security Operations by Pearson
Unlock this course with a free trial
Join today to access over 25,200 courses taught by industry experts.
Supply chain management
From the course: Cloud Security Operations by Pearson
Supply chain management
On the exam, you'll get a couple of questions on supply chain management. Make sure that you focus on the cloud supply chain. And also you want to reference the ISO IEC 27036-1 from 2021. It's a multi-part standard that delivers guidance on the assessment and handling of information risks involved in the acquisition of goods and services from suppliers. In our context, the supplier is part of the cloud supply chain, and it addresses perspectives of both acquirers and suppliers. The implied context is business-to-business relationships rather than retailing and information-related products. Supply chain management is made more complex when using several SAS providers or if you're in a multi-cloud deployment. Remember that for the exam. The terms acquisition and acquirer are used instead of purchase and purchasing Because the process, information risks, and controls are much the same, whether the transactions are commercial or whether they're non-commercial.
Contents
-
-
-
-
-
-
(Locked)
Audit controls, reports, and their impact1m 59s
-
(Locked)
Gap analysis and internal InfoSec management systems2m 41s
-
(Locked)
Policies and stakeholder involvement4m 21s
-
(Locked)
Specialized compliance requirements2m 55s
-
(Locked)
The impact of distributed IT3m 33s
-
(Locked)
Business agreement requirements2m 56s
-
(Locked)
Supply chain management1m 28s
-
(Locked)
-