exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 309 discussion

Actual exam question from ISC's CISSP
Question #: 309
Topic #: 1
[All CISSP Questions]

Which is the BEST control to meet the Statement on Standards for Attestation Engagements 18 (SSAE-18) confidentiality category?

  • A. File hashing
  • B. Storage encryption
  • C. Data retention policy
  • D. Data processing
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
franbarpro
Highly Voted 1 year, 7 months ago
Agreed - One way of providing Confidentiality is trought encryption.
upvoted 6 times
...
a_kto_to
Most Recent 1 month ago
Selected Answer: B
Under SSAE 18 (specifically the SOC 2 Trust Services Criteria), the confidentiality principle focuses on protecting sensitive information from unauthorized access. The best control to meet this objective is storage encryption, which ensures that even if data is accessed or stolen, it cannot be read without the proper decryption key.
upvoted 1 times
...
BoyBastos
9 months ago
Selected Answer: B
B. Storage encryption Storage encryption is the BEST control to ensure the confidentiality of data, as it protects data from unauthorized access by encrypting it.
upvoted 1 times
...
user009
1 year, 2 months ago
The correct answer is B. Storage encryption. Explanation: The Statement on Standards for Attestation Engagements 18 (SSAE-18) is an attestation standard developed by the American Institute of Certified Public Accountants (AICPA) for reporting on controls at service organizations. The confidentiality category of SSAE-18 addresses the protection of information from unauthorized disclosure. Storage encryption is the best control to meet the confidentiality category requirements, as it ensures that data stored on a device or in a database is encrypted, making it unreadable to unauthorized individuals. Even if the storage medium is compromised, the encrypted data remains protected from unauthorized access and disclosure.
upvoted 3 times
jackdryan
1 year ago
B is correct
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...