nerdexam
ExamsCAS-003Questions#366
CompTIA

CAS-003 · Question #366

CAS-003 Question #366: Real Exam Question with Answer & Explanation

The correct answer is D: Consult with the legal and/or human resources department and check company policies around. Responding to data requests from terminated employees requires consulting legal and HR to ensure the response aligns with company policy and applicable legal obligations.

Question

Ann, a terminated employee, left personal photos on a company-issued laptop and no longer has access to them. Ann emails her previous manager and asks to get her personal photos back. Which of the following BEST describes how the manager should respond?

Options

  • ADetermine if the data still exists by inspecting to ascertain if the laptop has already been wiped
  • BInform Ann that the laptop was for company data only and she should not have stored personal
  • CReport the email because it may have been a spoofed request coming from an attacker who is
  • DConsult with the legal and/or human resources department and check company policies around

Explanation

Responding to data requests from terminated employees requires consulting legal and HR to ensure the response aligns with company policy and applicable legal obligations.

Common mistakes.

  • A. Checking whether the data still exists is a technical step, not a policy decision - it does not address whether the company is permitted or required to return the data.
  • B. Dismissing the request by citing a data-use policy without involving legal or HR bypasses the governance process and could expose the company to legal liability.
  • C. Treating the email as a spoofed attack without first following HR and legal procedures is an overreaction that fails to address the legitimate policy question at hand.

Concept tested. Terminated employee data request governance process

Reference. https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/final

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice