CCSP · Question #87
What is a key component of GLBA?
The correct answer is C. The information security program. A key component of the Gramm-Leach-Bliley Act (GLBA) is the Safeguards Rule, requiring financial institutions to implement a comprehensive information security program.
Question
What is a key component of GLBA?
Options
- AThe right to be forgotten
- BEU Data Directives
- CThe information security program
- DThe right to audit
How the community answered
(39 responses)- A3% (1)
- B3% (1)
- C87% (34)
- D8% (3)
Why each option
A key component of the Gramm-Leach-Bliley Act (GLBA) is the Safeguards Rule, requiring financial institutions to implement a comprehensive information security program.
"The right to be forgotten" is a concept primarily associated with GDPR (General Data Protection Regulation) in the EU, not GLBA in the US.
"EU Data Directives" refer to European Union regulations, whereas GLBA is a United States federal law.
The Gramm-Leach-Bliley Act (GLBA) mandates that financial institutions protect their customers' nonpublic personal information. A central requirement of the GLBA's Safeguards Rule is that covered institutions must develop, implement, and maintain a comprehensive information security program designed to protect the security, confidentiality, and integrity of such information.
While audits are part of compliance, "the right to audit" is not a specific, overarching key component or a direct provision like the requirement for an information security program under GLBA.
Concept tested: GLBA compliance requirements
Source: https://www.ftc.gov/business-guidance/privacy-security/gramm-leach-bliley-act
Topics
Community Discussion
No community discussion yet for this question.