ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 422 - CAS-004 discussion

Report
Export

A small bank is evaluating different methods to address and resolve the following requirements

' Must be able to store credit card data using the smallest amount of data possible

* Must be compliant with PCI DSS

* Must maintain confidentiality if one piece of the layer is compromised

Which of the following is the best solution for the bank?

A.
Scrubbing
Answers
A.
Scrubbing
B.
Tokenization
Answers
B.
Tokenization
C.
Masking
Answers
C.
Masking
D.
Homomorphic encryption
Answers
D.
Homomorphic encryption
Suggested answer: B

Explanation:

Tokenization is the process of replacing sensitive data, like credit card numbers, with unique identification symbols (tokens) that retain all the essential information without compromising its security. This method is compliant with PCI DSS requirements as it ensures that actual credit card data is not stored or processed, thus minimizing the risk of data breaches. Tokenization also maintains confidentiality even if part of the data handling system is compromised, as the tokens do not hold any exploitable data.

asked 02/10/2024
Musoke Kamuzze
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first