ExamGecko
Question list
Search
Search

Question 87 - CISM discussion

Report
Export

Which of the following is the BEST way to achieve compliance with new global regulations related to the protection of personal information?

A.
Execute a risk treatment plan.
Answers
A.
Execute a risk treatment plan.
B.
Review contracts and statements of work (SOWs) with vendors.
Answers
B.
Review contracts and statements of work (SOWs) with vendors.
C.
Implement data regionalization controls.
Answers
C.
Implement data regionalization controls.
D.
Determine current and desired state of controls.
Answers
D.
Determine current and desired state of controls.
Suggested answer: D

Explanation:

The best way to achieve compliance with new global regulations related to the protection of personal information is to determine the current and desired state of controls, as this helps the information security manager to identify the gaps and requirements for compliance, and to prioritize and implement the necessary actions and measures to meet the regulatory standards. The current state of controls refers to the existing level of protection and compliance of the personal information, while the desired state of controls refers to the target level of protection and compliance that is required by the new regulations. By comparing the current and desired state of controls, the information security manager can assess the maturity and effectiveness of the information security program, and plan and execute a risk treatment plan to address the risks and issues related to the protection of personal information.Executing a risk treatment plan, reviewing contracts and statements of work (SOWs) with vendors, and implementing data regionalization controls are also important, but not as important as determining the current and desired state of controls, as they are dependent on the outcome of the gap analysis and the risk assessment, and may not be sufficient or appropriate to achieve compliance with the new regulations.Reference= CISM Review Manual 2023, page 491; CISM Review Questions, Answers & Explanations Manual 2023, page 352; ISACA CISM - iSecPrep, page 203

asked 01/10/2024
Tiziano Riezzo
47 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first