ExamGecko
Question list
Search
Search

Related questions

Question 1101 - CISA discussion

Report
Export

Which of the following statements appearing in an organization's acceptable use policy BEST demonstrates alignment with data classification standards related to the protection of information assets?

A.
Any information assets transmitted over a public network must be approved by executive management.
Answers
A.
Any information assets transmitted over a public network must be approved by executive management.
B.
All information assets must be encrypted when stored on the organization's systems.
Answers
B.
All information assets must be encrypted when stored on the organization's systems.
C.
Information assets should only be accessed by persons with a justified need.
Answers
C.
Information assets should only be accessed by persons with a justified need.
D.
All information assets will be assigned a clearly defined level to facilitate proper employee handling.
Answers
D.
All information assets will be assigned a clearly defined level to facilitate proper employee handling.
Suggested answer: D

Explanation:

The statement that BEST demonstrates alignment with data classification standards related to the protection of information assets isD. All information assets will be assigned a clearly defined level to facilitate proper employee handling. Data classification involves categorizing information assets based on their sensitivity, importance, and usage. Assigning clearly defined levels (such as public, internal, confidential, etc.) to information assets ensures that appropriate security controls are applied based on their classification.By doing so, organizations can manage access, encryption, and other protective measures effectively12.

IFRC.''Information Security: Acceptable Use Policy.''1(https://www.ifrc.org/sites/default/files/2021-11/IFRC-Information-Security-Acceptable-Use-Policy.pdf)

UNSW Sydney.''Data Classification Standard.''2(https://www.unsw.edu.au/content/dam/pdfs/governance/policy/2022-01-policies/datastandard.pdf)

Digital Guardian.''What is a Data Classification Policy?''3(https://www.digitalguardian.com/blog/what-data-classification-policy)

Microsoft Service Trust Portal.''Data classification & sensitivity label taxonomy.''4(https://learn.microsoft.com/en-us/compliance/assurance/assurance-data-classification-and-labels)

Clark University ITS Policies.''Data Classification - Data Security Policies.''5(https://www2.clarku.edu/offices/its/policies/data_classification.cfm)

asked 18/09/2024
Antonio Pombo
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first