ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 434 - SY0-601 discussion

Report
Export

An information security officer at a credit card transaction company is conducting a frameworkmapping exercise with the internal controls. The company recently established a new office in Europe. To which of the following frameworks should the security officer map the existing controls' (Select two).

A.
ISO
Answers
A.
ISO
B.
PCI DSS
Answers
B.
PCI DSS
C.
SOC
Answers
C.
SOC
D.
GDPR
Answers
D.
GDPR
E.
CSA
Answers
E.
CSA
F.
NIST
Answers
F.
NIST
Suggested answer: B, D

Explanation:

PCI DSS (Payment Card Industry Data Security Standard) is a set of security standards and requirements for organizations that store, process, or transmit payment card data. It aims to protect cardholder data and prevent fraud and data breaches. GDPR (General Data Protection Regulation) is a regulation that governs the collection, processing, and transfer of personal data of individuals in the European Union. It aims to protect the privacy and rights of data subjects and impose obligations and penalties on data controllers and processors. These are the frameworks that the security officer should map the existing controls to, as they are relevant for a credit card transaction company that has a new office in Europe

asked 02/10/2024
Keona Campbell
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first