exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 141 discussion

Actual exam question from Isaca's CISA
Question #: 141
Topic #: 1
[All CISA Questions]

What is the BEST method for securing credit card numbers stored temporarily on a file server prior to transmission to the downstream system for payment processing?

  • A. Masking the full credit card number
  • B. Encryption with strong cryptography
  • C. Truncating the credit card number
  • D. One-way hash with strong cryptography
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
BabaP
Highly Voted 1 year, 2 months ago
Selected Answer: B
Answer is B. how do you mask a file server?
upvoted 5 times
...
46080f2
Most Recent 3 weeks, 4 days ago
Selected Answer: B
Vote for B. – based on the case study in the ISACA Manual 27th ed: § 3.8.1 – “… forwards all sales data over a frame relay network to database servers located at the retailer’s corporate headquarters, with strong encryption applied to the data, which are then sent over a virtual private network (VPN) to the credit card processor for approval of the sale….”
upvoted 2 times
...
blues_lee
5 months, 3 weeks ago
Encryption with strong cryptography
upvoted 3 times
...
mibg83
1 year, 1 month ago
Selected Answer: B
Encryption
upvoted 2 times
...
MohamedAbdelaal
1 year, 2 months ago
Selected Answer: A
A for sure
upvoted 2 times
...
MichaelHoang
1 year, 5 months ago
Selected Answer: B
i vote for B. If masking is being used here, how the data is processed by payment system. Once the data is masked, you cannot retrieve the original data hence the payment system cannot use this data. Therefore, i vote for encryption here.
upvoted 2 times
...
Victor83516
1 year, 9 months ago
Because it is only temporarily stored, if encryption is used, it will cause redundant operations, and it is better to use masking.
upvoted 2 times
...
2022cisa
1 year, 9 months ago
Agree, answer should be A , as Q says prior to transmission, and encryption ensures integrity during transmission via cryptographic key pairs
upvoted 1 times
...
2022cisa
1 year, 9 months ago
Why not D, 1 way hash ; as B only says encryption , so it can be symmetric also
upvoted 1 times
ChaBum
4 months, 1 week ago
hash is not reversible, so you can only check the hash again another hash coming from the same "data", sending the hash over would be useless if the information of the credit card is not already with the other party.
upvoted 2 times
...
...
Julianleehk
1 year, 9 months ago
It should be A
upvoted 1 times
2022cisa
1 year, 9 months ago
Pls explain why masking is better than encryption
upvoted 2 times
...
...
MunaM
1 year, 10 months ago
Answer should be B as encryption is the best protection
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago