Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

IIA Internal Audit Function IIA-CIA-Part3 Question # 27 Topic 3 Discussion

IIA Internal Audit Function IIA-CIA-Part3 Question # 27 Topic 3 Discussion

IIA-CIA-Part3 Exam Topic 3 Question 27 Discussion:
Question #: 27
Topic #: 3

An organization decided to outsource its human resources function. As part of its process migration, the organization is implementing controls over sensitive employee data.

What would be the most appropriate directive control in this area?


A.

Require a Service Organization Controls (SOC) report from the service provider


B.

Include a data protection clause in the contract with the service provider.


C.

Obtain a nondisclosure agreement from each employee at the service provider who will handle sensitive data.


D.

Encrypt the employees ' data before transmitting it to the service provider


Get Premium IIA-CIA-Part3 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.