exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 395 discussion

Actual exam question from Isaca's CISA
Question #: 395
Topic #: 1
[All CISA Questions]

Which of the following is the MOST important consideration for an organization when strategizing to comply with privacy regulations?

  • A. Ensuring up-to-date knowledge of where customer personal data is saved.
  • B. Ensuring there are staff members with in-depth knowledge of the regulations.
  • C. Ensuring regular access recertification to information systems.
  • D. Ensuring contracts with third parties that process customer data are regularly updated.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Swallows
1 month ago
Selected Answer: A
While ensuring contracts with third parties that process customer data are regularly updated (Option D) is also important for privacy compliance, it is secondary to having up-to-date knowledge of where customer personal data is saved. Without a clear understanding of where personal data resides within the organization's systems and processes, it is challenging to effectively manage access, update contracts, or implement other privacy compliance measures.
upvoted 2 times
...
shiowbah
7 months, 3 weeks ago
A. Ensuring up-to-date knowledge of where customer personal data is saved.
upvoted 4 times
...
AB1237
10 months, 1 week ago
Selected Answer: C
Isnt it C - Ensuring regular access recertification to information systems.?
upvoted 2 times
ChaBum
4 months ago
related to Data Privacy, the most important is to understand where the data is stored and processed, that's the only way to know the data has not been transferred to a geographic area not complying to the same Privacy regulation than the original one.
upvoted 1 times
...
...
3008
11 months, 1 week ago
Selected Answer: B
The success of an organization's strategy to comply with privacy regulations largely depends on having staff members with in-depth knowledge of the regulations. Such staff members should be able to understand the regulations and communicate them effectively to the organization's stakeholders, including other employees, vendors, and customers. They should also be able to identify potential risks to the organization's data privacy and develop effective strategies to mitigate those risks. While the other options listed in the question are important considerations for an organization when strategizing to comply with privacy regulations, they are not as critical as having staff members with in-depth knowledge of the regulations.
upvoted 1 times
3008
11 months, 1 week ago
For example, ensuring up-to-date knowledge of where customer data is saved is essential for an organization to comply with privacy regulations. However, this is not the most important consideration because the organization's ability to locate customer data will depend on having staff members with in-depth knowledge of the regulations to guide them on how and where to store such data. Similarly, ensuring regularly updated contracts with third parties that process customer data is essential, but not the most critical consideration. This is because the organization's ability to update such contracts will depend on having staff members with in-depth knowledge of the regulations to identify any changes that need to be made to the contracts.
upvoted 1 times
...
ChaBum
4 months ago
in-depth knowledge of the regulations, applies only to the Legal and Privacy team, the whole staff do not need the "in-depth knowledge", awareness adapted to their specific job is enough.
upvoted 1 times
...
...
user173681972
1 year, 6 months ago
Could someone help explain why it is not answer B?
upvoted 1 times
MichaelHoang
1 year, 6 months ago
normally, staffs are not required to have deep knowledge of regulation.
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago