IAPP CIPP/US Practice Exam

Category - Professional

NYDFS Cybersecurity Regulations require covered entities to implement a cybersecurity policy in line with ISO 27001 standards and which covers __________.
  1. Information security, access controls, disaster recovery planning, and customer data privacy
  2. Information storage, access controls, biometric data protection, and disaster recovery planning
  3. Information security, access controls, disaster recovery planning, systems, and network security, customer data privacy, and regular risk assessments
  4. All of the above
Explanation
Answer: C - NYDFS Cybersecurity Regulations require covered entities to implement a cybersecurity policy according to ISO 27001 standards. The policy must cover information security, access controls, disaster recovery planning, systems, and network security, customer data privacy, and regular risk assessments.
 
Mandatory reporting under this law requires the organization’s cybersecurity policies and procedures, security risks, and effectiveness of the organization’s existing measures to prevent, detect and respond to cybersecurity threats and events.
Was this helpful? Upvote!
Login to contribute your own answer or details

Top questions

Related questions

Most popular on PracticeQuiz