Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 452 discussion

Actual exam question from ISC's CISSP
Question #: 452
Topic #: 1
[All CISSP Questions]

An organization is developing employee training content to increase awareness of Payment Card Industry (PCI) standards. What are the three types of awareness roles applicable to the organization?

  • A. All personnel, specialized, management
  • B. Standard, privileged, administrator
  • C. Basic, intermediate, advanced
  • D. Technical, operational, administrative
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
awsc
Highly Voted 1 year, 8 months ago
I'm going with A When developing employee training content to increase awareness of Payment Card Industry (PCI) standards, the three types of awareness roles applicable to the organization are: All personnel: All employees who handle cardholder data should receive training on PCI compliance requirements, their roles and responsibilities, and how to report security incidents or concerns. Specialized: Employees with specialized roles, such as IT or security personnel, who are responsible for implementing and maintaining PCI compliance measures, should receive more in-depth training on technical and operational aspects of compliance. Management: Management-level employees who oversee PCI compliance programs and initiatives should receive training on the overall scope and objectives of compliance, as well as their responsibilities for ensuring compliance across the organization.
upvoted 7 times
...
pete79
Most Recent 9 months, 2 weeks ago
Selected Answer: A
Page #4: https://listings.pcisecuritystandards.org/documents/PCI_DSS_V1.0_Best_Practices_for_Implementing_Security_Awareness_Program.pdf
upvoted 3 times
...
YesPlease
11 months, 1 week ago
Selected Answer: A
Answer A) All personnel, specialized, management. https://www.itgovernance.co.uk/blog/guidance-on-an-effective-pci-dss-staff-awareness-programme#:~:text=The%20PCI%20SSC%20recommends%20that%20a%20minimum%20of%20three%20roles%20are%20defined%3A%20specialist%2C%20management%20and%20all%20personnel.
upvoted 3 times
...
Soleandheel
11 months, 1 week ago
A. All personnel, specialized, management. The PCI Security Standards Council recommends providing security awareness training for all personnel, including management, executives, and staff members with various roles related to processing cardholder data. The training should be customized to the specific roles and responsibilities within the organization to ensure that individuals are aware of their responsibilities and the security measures required to comply with PCI standards.
upvoted 2 times
...
BestCommentorNA
1 year ago
Selected Answer: A
I go with A
upvoted 1 times
...
bherto39
1 year, 2 months ago
Selected Answer: A
could it be A? chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https://listings.pcisecuritystandards.org/documents/PCI_DSS_V1.0_Best_Practices_for_Implementing_Security_Awareness_Program.pdf
upvoted 1 times
...
aleXplicitly
1 year, 7 months ago
Selected Answer: A
D is types of security controls. Awareness roles are meant for training to achieve better understanding. I vote A.
upvoted 3 times
jackdryan
1 year, 6 months ago
A is correct
upvoted 1 times
...
...
Arsh_2022
1 year, 8 months ago
agree with given Answer D
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...