Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 136 discussion

Actual exam question from ISC's CISSP
Question #: 136
Topic #: 1
[All CISSP Questions]

The European Union (EU) General Data Protection Regulation (GDPR) requires organizations to implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk. The Data Owner should therefore consider which of the following requirements?

  • A. Never to store personal data of EU citizens outside the EU
  • B. Data masking and encryption of personal data
  • C. Only to use encryption protocols approved by EU
  • D. Anonymization of personal data when transmitted to sources outside the EU
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
8b48948
7 months ago
No way its B "think like a manager" - has to be D.
upvoted 1 times
...
629f731
10 months, 3 weeks ago
Selected Answer: B
Option A states "Never store personal data of European Union citizens outside the European Union." Although the international transfer of personal data outside the EU is subject to restrictions under the General Data Protection Regulation (GDPR), the law does not strictly prohibit the storage of EU citizens' data outside the region. Rather than outright prohibiting the storage of data outside the EU, the GDPR states that when personal data is transferred outside the European Union to non-EU countries, appropriate safeguards must be implemented to ensure an adequate level of data protection. These safeguards may include standard contractual clauses, the use of approved certification instruments, or the assessment of the adequacy of the recipient country in terms of data protection.
upvoted 2 times
...
74gjd_37
1 year, 2 months ago
Selected Answer: B
Data masking and encryption of personal data are some of the measures that can be taken to ensure the security of personal data. However, the GDPR does not require organizations to store personal data of EU citizens only within the EU or use encryption protocols approved by the EU. In contrast, the Russian law of privacy requires companies to store personal data of Russian citizens on servers located within the territory of the Russian Federation. Failure to comply with this requirement may result in fines and other penalties. The GDPR does not impose such a requirement.
upvoted 2 times
...
Bach1968
1 year, 4 months ago
Selected Answer: B
The correct answer is B. Data masking and encryption of personal data. The EU General Data Protection Regulation (GDPR) requires organizations to implement appropriate technical and organizational measures to ensure the security of personal data. Data masking and encryption are examples of such measures.
upvoted 1 times
...
Jamati
2 years ago
Selected Answer: A
GDPR requires that all EU citizen data be stored within the EU.
upvoted 3 times
Firedragon
2 years ago
Does GDPR data need to be stored in EU? The GDPR requires that all data collected on citizens must be either stored in the EU, so it is subject to European privacy laws, or within a jurisdiction that has similar levels of protection.
upvoted 2 times
jackdryan
1 year, 6 months ago
B is correct
upvoted 1 times
...
...
...
sphenixfire
2 years ago
Selected Answer: B
Only possible regarding biz
upvoted 3 times
...
rdy4u
2 years ago
Selected Answer: B
A data owner is responsible for the data within their perimeter in terms of its collection, protection and quality.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...