exam questions

Exam CRISC All Questions

View all questions & answers for the CRISC exam

Exam CRISC topic 1 question 443 discussion

Actual exam question from Isaca's CRISC
Question #: 443
Topic #: 1
[All CRISC Questions]

Which of the following would be the BEST way to help ensure the effectiveness of a data loss prevention (DLP) control that has been implemented to prevent the loss of credit card data?

  • A. Reviewing logs for unauthorized data transfers
  • B. Configuring the DLP control to block credit card numbers
  • C. Testing the transmission of credit card numbers
  • D. Testing the DLP rule change control process
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
01010100
10 months ago
Selected Answer: C
C. Testing the transmission of credit card numbers The best way to ensure the effectiveness of a DLP control, especially one that's intended to prevent the loss of sensitive data like credit card numbers, would be to test the system by attempting to transmit credit card numbers. If the system works as intended, it should detect and block such attempts, thereby proving its effectiveness. A. While reviewing logs for unauthorized data transfers is an important activity for overall security, it does not proactively test the DLP control's ability to prevent loss of credit card data. B. Configuring the DLP control to block credit card numbers is a necessary setup step, but it doesn't ensure the effectiveness of the control. The effectiveness can only be ensured by testing. D. Testing the DLP rule change control process could be important to ensure changes to rules are properly managed, but it does not directly validate the effectiveness of the DLP control in preventing the loss of credit card data.
upvoted 2 times
...
mraiyan
11 months, 3 weeks ago
Selected Answer: A
Agree "A" the best answer
upvoted 1 times
...
john_boogieman
1 year, 3 months ago
Selected Answer: C
Generally, the effectiveness of a control is checked by testing it. Option 'A' simply talks about 'data transfers'.
upvoted 1 times
john_boogieman
1 year, 3 months ago
Sorry, new reading, so best 'A'.
upvoted 1 times
...
...
Ziggybooboo
1 year, 4 months ago
C for me
upvoted 1 times
...
Suchib
1 year, 4 months ago
Is it not C
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...