IAPP Certified Information Privacy Manager (CIPM) CIPM Question # 36 Topic 4 Discussion

IAPP Certified Information Privacy Manager (CIPM) CIPM Question # 36 Topic 4 Discussion

CIPM Exam Topic 4 Question 36 Discussion:
Question #: 36
Topic #: 4

SCENARIO

Please use the following lo answer the next question:

The board risk committee of your organization is particularly concerned not only by the number and frequency of data breaches reported to it over the past 12 months, but also the inconsistency in responses and poor incident response turnaround times.

Upon reviewing the current incident response plan (IRP), it was discovered that while the business continuity plan (BCP) had been updated on time, the IRP, linked to BCP. was last updated over three years ago.

The board risk committee has noted this as high risk especially since company policy is to review and update policies and plans annually. Consequently, the newly appointed data protection officer (DPO) was requested to provide a paper on how she would remediate the situation.

As a seasoned data privacy professional, you have been requested to assist the new DPO.

Which additional proactive step listed below would best mitigate these risks in the future?


A.

Make the IRP a live document that is evaluated for completeness during each incident.


B.

Make copies of the IRP in various place so it can be accessed remotely or when offline.


C.

Add comments about incidents to the IRP to record what action was taken.


D.

Make sure that everyone listed in the IRP has a copy of the IRP


Get Premium CIPM Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.