ExamGecko
Question list
Search
Search

Related questions











Question 690 - CISA discussion

Report
Export

Which of the following is the PRIMARY objective of implementing privacy-related controls within an organization?

A.
To prevent confidential data loss
Answers
A.
To prevent confidential data loss
B.
To comply with legal and regulatory requirements
Answers
B.
To comply with legal and regulatory requirements
C.
To identify data at rest and data in transit for encryption
Answers
C.
To identify data at rest and data in transit for encryption
D.
To provide options to individuals regarding use of their data
Answers
D.
To provide options to individuals regarding use of their data
Suggested answer: B

Explanation:

The primary objective of implementing privacy-related controls within an organization is to comply with legal and regulatory requirements that protect the rights and interests of individuals whose personal data are collected, processed, stored, shared or disposed by the organization. Privacy-related controls are based on principles such as lawfulness, fairness, transparency, purpose limitation, data minimization, accuracy, storage limitation, integrity, confidentiality and accountability. These principles aim to ensure that personal data are processed in a manner that respects the privacy of individuals and complies with the applicable laws and regulations in different jurisdictions. Preventing confidential data loss, identifying data at rest and data in transit for encryption, and providing options to individuals regarding use of their data are examples of specific privacy-related controls that support the primary objective of compliance.Reference:Privacy Regulatory Lookup Tool,CDPSE Official Review Manual, 2nd Edition

asked 18/09/2024
Muhammad Gul
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first