QuestionQ595

Information Security Governance

Which of the following security initiatives should be the FIRST step in helping an organization maintain compliance with privacy regulations?

  • A Implementing a data classification framework
  • B Implementing security information and event management (SIEM)
  • C Installing a data loss prevention (DLP) solution
  • D Developing security awareness training
Explanation

A data classification framework identifies and categorizes sensitive and personal data so the organization can apply appropriate handling, protection, retention, and access controls. It provides the basis for effective monitoring, data loss prevention, and awareness training.

Community Discussion

No comments yet. Be the first to start the discussion!