BCS Foundation Certificate in Information Security Management Principles V9.0 CISMP-V9 Question # 9 Topic 1 Discussion

BCS Foundation Certificate in Information Security Management Principles V9.0 CISMP-V9 Question # 9 Topic 1 Discussion

CISMP-V9 Exam Topic 1 Question 9 Discussion:
Question #: 9
Topic #: 1

Why might the reporting of security incidents that involve personal data differ from other types of security incident?


A.

Personal data is not highly transient so its 1 investigation rarely involves the preservation of volatile memory and full forensic digital investigation.


B.

Personal data is normally handled on both IT and non-IT systems so such incidents need to be managed in two streams.


C.

Data Protection legislation normally requires the reporting of incidents involving personal data to a Supervisory Authority.


D.

Data Protection legislation is process-oriented and focuses on quality assurance of procedures and governance rather than data-focused event investigation


Get Premium CISMP-V9 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.