フリー問題

Certified Data Privacy Solutions Engineer のフリー問題 6 / 20 問目

問題文

A security team argues that a system holding personal data has no privacy risk because it has no known vulnerabilities and no breach has occurred. Which explanation corrects that reasoning?

選択肢

  1. Privacy risk is the same as compliance risk, so an absence of findings in the last audit is sufficient evidence.
  2. Privacy risk exists only where a legal requirement applies, so the assessment should start from the applicable law rather than from the system.
  3. Privacy risk can arise from the authorized processing itself, so a system with no security weakness can still create risk through what it does with the data.
  4. Privacy risk equals security risk multiplied by the record count, so a system with no vulnerability still carries a residual amount.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。