ExamGecko
Home Home / ISC / CCSP
Question list
Search
Search

Question 325 - CCSP discussion

Report
Export

Which of the following is NOT a major regulatory framework?

A.
PCI DSS
Answers
A.
PCI DSS
B.
HIPAA
Answers
B.
HIPAA
C.
SOX
Answers
C.
SOX
D.
FIPS 140-2
Answers
D.
FIPS 140-2
Suggested answer: D

Explanation:

FIPS 140-2 is a United States certification standard for cryptographic modules, and it provides guidance and requirements for their use based on the requirements of the data classification. However, these are not actual regulatory requirements. The Health Insurance Portability and Accountability Act (HIPAA), Sarbanes-Oxley Act (SOX), and the Payment Card Industry Data Security Standard (PCI DSS) are all major regulatory frameworks either by law or specific to an industry.

asked 18/09/2024
Joseph McCray
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first