SaaS(Software as a Service)プロバイダーは、顧客の機密データが漏洩するリスクが低いと判断しました。顧客にとって最善の対応策は次のどれですか?
正解:C
Instead of relying solely on the provider's internal assessment, the client should validate control effectiveness throughindependent audit reports(e.g., SOC 2 Type II). These provide third-party assurance. Reference:CRISC Manual - Domain 3, Slide 304-305