100-160 Question 246
Select 3During an incident response process, a cybersecurity technician is asked to ensure that the organization's actions comply with the General Data Protection Regulation (GDPR). Which of the following steps are most likely impacted by this compliance framework?
- A
Documenting all actions taken during the incident response process
- B
Notifying affected individuals and regulatory authorities within a specific timeframe
- C
Ensuring that incident response procedures include proper risk scoring for vulnerabilities
- D
Erasing personal data if requested once the incident is resolved
- E
Prioritizing the use of automated tools to identify malware
Show answer and explanation
Correct answers: A, B, D
Explanation
Compliance frameworks like GDPR directly influence how incidents are handled by mandating specific actions such as documentation, timely notifications, and respecting individual rights like data erasure. These requirements ensure that organizations remain accountable and transparent while addressing security incidents.
- A. Correct.
Documenting actions is crucial for compliance with GDPR, as it ensures accountability and transparency during the incident response process.
- B. Correct.
Under GDPR, organizations are required to notify affected individuals and regulatory authorities about a data breach within a specific timeframe (e.g., 72 hours).
- C. Incorrect.
While risk scoring is important in cybersecurity, it is not explicitly mandated by GDPR as part of incident handling compliance.
- D. Correct.
GDPR gives individuals the right to request the erasure of their personal data, which must be considered even during incident resolution.
- E. Incorrect.
Using automated tools for malware detection is a best practice in cybersecurity but is not directly impacted by GDPR compliance requirements.