A new privacy regulation requires a customer's privacy information to be deleted within 72 hours, if requested. Which of the following would be an IS auditor's GREATEST concern regarding compliance to this regulation?
A.
Outdated online privacy policies
B.
End user access to applications with customer information
C.
Incomplete backup and retention policies
D.
Lack of knowledge of where customers' information is saved
The greatest concern for an IS auditor regarding compliance with the new privacy regulation would be a lack of knowledge of where customers' information is saved. If the organization does not know where the information is stored, it would be impossible to delete it within the required 72-hour timeframe upon request.
Should be 'A', ques is on compliance and new policy implementation
upvoted 1 times
...
This section is not available anymore. Please use the main Exam Page.CISA Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
SBD600
Highly Voted 1 year, 8 months agoa84n
Most Recent 8 months, 2 weeks agomeelaan
1 year, 3 months ago007Georgeo
1 year, 8 months ago2022cisa
2 years, 2 months ago