exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 504 discussion

Actual exam question from CompTIA's SY0-601
Question #: 504
Topic #: 1
[All SY0-601 Questions]

An information security officer at a credit card transaction company is conducting a framework-mapping exercise with the internal controls. The company recently established a new office in Europe. To which of the following frameworks should the security officer map the existing controls? (Choose two.)

  • A. ISO
  • B. PCIDSS
  • C. SOC
  • D. GDPR
  • E. CSA
  • F. NIST
Show Suggested Answer Hide Answer
Suggested Answer: BD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CastratedMonk
Highly Voted 1 year, 11 months ago
Selected Answer: BD
Credit Card = PCI DSS Europe = GDPR remembers those and you're cheering lads
upvoted 14 times
...
Nemish71
Most Recent 1 year, 1 month ago
Selected Answer: BD
You're luck if you get this in exam
upvoted 1 times
...
memodrums
1 year, 4 months ago
This question are those that any can be the answer cause of the context of the question. It can be PCI DSS since its a credit card company. Also, be SOC and NIST because both frameworks have internal controls. Lastly, it can be GDPR because they are in Europe. CompTIA is horrible!
upvoted 3 times
...
Made100
1 year, 6 months ago
It's D and F It doesn't specifically talk about the credit card having an establishment in Europe. That's what chat GPT said, I could be wrong though because I thought it was BD too.
upvoted 1 times
klinkklonk
1 year, 5 months ago
The company has a branch in Europe that will need to conform. Come on.
upvoted 1 times
...
...
cyberPunk28
1 year, 6 months ago
Selected Answer: BD
B. PCIDSS D. GDPR
upvoted 1 times
...
Yessssssssss
1 year, 8 months ago
Selected Answer: AF
I wouldn't go with b or c because those are regulations, not frameworks. I am picking ISO and NIST
upvoted 2 times
...
ApplebeesWaiter1122
1 year, 11 months ago
Selected Answer: BD
B. PCIDSS (Payment Card Industry Data Security Standard): If the credit card transaction company processes credit card payments, compliance with PCI DSS is essential. This framework sets the security standards for protecting cardholder data, and mapping controls to PCI DSS helps ensure the company's payment processing operations are secure and compliant. D. GDPR (General Data Protection Regulation): This framework is essential when the company establishes an office in Europe since it governs the protection of personal data of EU citizens. Compliance with GDPR is crucial to ensure the company handles customer data appropriately and adheres to European data protection laws.
upvoted 4 times
...
Gamsje
1 year, 11 months ago
Selected Answer: BD
B. PCIDSS D. GDPR
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...