nerdexam
CompTIA

CAS-002 · Question #163

A business wants to start using social media to promote the corporation and to ensure that customers have a good experience with their products. Which of the following security items should the…

The correct answer is A. The company must dedicate specific staff to act as social media representatives of the E. The security policy needs to be reviewed to ensure that social media policy is properly. Before launching social media for business use, a company must designate authorized representatives and ensure its security policy explicitly addresses social media governance.

Integration of Computing, Communications and Business Disciplines

Question

A business wants to start using social media to promote the corporation and to ensure that customers have a good experience with their products. Which of the following security items should the company have in place before implementation? (Select TWO).

Options

  • AThe company must dedicate specific staff to act as social media representatives of the
  • BAll staff needs to be instructed in the proper use of social media in the work environment.
  • CSenior staff blogs should be ghost written by marketing professionals.
  • DThe finance department must provide a cost benefit analysis for social media.
  • EThe security policy needs to be reviewed to ensure that social media policy is properly
  • FThe company should ensure that the company has sufficient bandwidth to allow for social

How the community answered

(33 responses)
  • A
    91% (30)
  • D
    6% (2)
  • F
    3% (1)

Why each option

Before launching social media for business use, a company must designate authorized representatives and ensure its security policy explicitly addresses social media governance.

AThe company must dedicate specific staff to act as social media representatives of theCorrect

Dedicating specific staff as authorized social media representatives ensures that only trained personnel post on behalf of the company, reducing risks of accidental data disclosure, reputational damage, or social engineering through official channels.

BAll staff needs to be instructed in the proper use of social media in the work environment.
CSenior staff blogs should be ghost written by marketing professionals.

Ghost-writing senior staff blogs is a marketing and communications concern, not a security control, and does not address data protection, access management, or policy compliance.

DThe finance department must provide a cost benefit analysis for social media.

A cost-benefit analysis is a financial management activity and does not constitute a security prerequisite for safe social media implementation.

EThe security policy needs to be reviewed to ensure that social media policy is properlyCorrect

Reviewing the security policy to incorporate social media provisions establishes formal governance, defines acceptable use boundaries, and provides the legal and procedural framework needed to enforce controls and respond to incidents.

FThe company should ensure that the company has sufficient bandwidth to allow for social

Sufficient bandwidth is an infrastructure capacity concern unrelated to the security risks - such as data leakage or account compromise - introduced by social media use.

Concept tested: Social media security policy and authorized representative controls

Source: https://www.nist.gov/publications/social-media-security-recommendations

Topics

#social media policy#acceptable use policy#security governance#employee awareness

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice