Isaca Certified in Risk and Information Systems Control CRISC Question # 498 Topic 50 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 498 Topic 50 Discussion

CRISC Exam Topic 50 Question 498 Discussion:
Question #: 498
Topic #: 50

A risk practitioner has recently become aware of unauthorized use of confidential personal information within the organization. Which of the following should the risk practitioner do FIRST?


A.

Establish database activity monitoring


B.

Report the incident to the chief privacy officer (CPO)


C.

Invoke the incident response plan


D.

Escalate the issue to the data owner


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.