List of questions
Question 253 - CRISC discussion
A new regulator/ requirement imposes severe fines for data leakage involving customers' personally identifiable information (Pll). The risk practitioner has recommended avoiding the risk. Which of the following actions would BEST align with this recommendation?
A.
Reduce retention periods for Pll data.
B.
Move Pll to a highly-secured outsourced site.
C.
Modify business processes to stop collecting Pll.
D.
Implement strong encryption for Pll.
Your answer:
0 comments
Sorted by
Leave a comment first