ExamGecko
Question list
Search
Search

Related questions

Question 417 - CISA discussion

Report
Export

A credit card company has decided to outsource the printing of customer statements It Is MOST important for the company to verify whether:

A.
the provider has alternate service locations.
Answers
A.
the provider has alternate service locations.
B.
the contract includes compensation for deficient service levels.
Answers
B.
the contract includes compensation for deficient service levels.
C.
the provider's information security controls are aligned with the company's.
Answers
C.
the provider's information security controls are aligned with the company's.
D.
the provider adheres to the company's data retention policies.
Answers
D.
the provider adheres to the company's data retention policies.
Suggested answer: C

Explanation:

The most important thing for the company to verify when outsourcing the printing of customer statements is whether the provider's information security controls are aligned with the company's. This is because customer statements contain sensitive personal and financial information that need to be protected from unauthorized access, disclosure, modification or destruction. The provider's information security controls should be consistent with the company's policies, standards and regulations, and should be audited periodically to ensure compliance.The other options are also relevant, but not as critical as information security.Reference:CISA Review Manual (Digital Version)1, Chapter 3, Section 3.2.2

asked 18/09/2024
frederic Morteau
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first