100-160 exam dumps

100-160 practice question 246 of 265

Cisco Certified Support Technician (CCST) Cybersecurity. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-160 Question 246

Select 3

During an incident response process, a cybersecurity technician is asked to ensure that the organization's actions comply with the General Data Protection Regulation (GDPR). Which of the following steps are most likely impacted by this compliance framework?

  1. A

    Documenting all actions taken during the incident response process

  2. B

    Notifying affected individuals and regulatory authorities within a specific timeframe

  3. C

    Ensuring that incident response procedures include proper risk scoring for vulnerabilities

  4. D

    Erasing personal data if requested once the incident is resolved

  5. E

    Prioritizing the use of automated tools to identify malware

Show answer and explanation

Correct answers: A, B, D

Explanation

Compliance frameworks like GDPR directly influence how incidents are handled by mandating specific actions such as documentation, timely notifications, and respecting individual rights like data erasure. These requirements ensure that organizations remain accountable and transparent while addressing security incidents.

  • A. Correct.

    Documenting actions is crucial for compliance with GDPR, as it ensures accountability and transparency during the incident response process.

  • B. Correct.

    Under GDPR, organizations are required to notify affected individuals and regulatory authorities about a data breach within a specific timeframe (e.g., 72 hours).

  • C. Incorrect.

    While risk scoring is important in cybersecurity, it is not explicitly mandated by GDPR as part of incident handling compliance.

  • D. Correct.

    GDPR gives individuals the right to request the erasure of their personal data, which must be considered even during incident resolution.

  • E. Incorrect.

    Using automated tools for malware detection is a best practice in cybersecurity but is not directly impacted by GDPR compliance requirements.

Timed practice exam

Take a 100-160 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam