Free CISSP Exam Braindumps (page: 15)

Page 14 of 122

The acquisition of personal data being obtained by a lawful and fair means is an example of what principle?

  1. Collection Limitation Principle
  2. Openness Principle
  3. Purpose Specification Principle
  4. Data Quality Principle

Answer(s): A



Which of the following is the MOST appropriate control for asset data labeling procedures?

  1. Categorizing the types of media being used
  2. Logging data media to provide a physical inventory control
  3. Reviewing off-site storage access controls
  4. Reviewing audit trails of logging records

Answer(s): A



What is the BEST approach to anonymizing personally identifiable information (PII) in a test environment?

  1. Swapping data
  2. Randomizing data
  3. Encoding data
  4. Encrypting data

Answer(s): B



Which of the following departments initiates the request, approval, and provisioning business process?

  1. Operations
  2. Security
  3. Human resources (HR)
  4. Information technology (IT)

Answer(s): A






Post your Comments and Discuss ISC CISSP exam with other Community members: