nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #156

CERTIFIED-IN-CYBERSECURITY Question #156: Real Exam Question with Answer & Explanation

The correct answer is C: Applying the longest retention periods to the information. A common mistake in record retention is applying the longest retention period without taking into account the sensitivity or importance of the corresponding information. Retaining unnecessary data has considerable costs in terms of storage and management. Less important or sensit

Security Principles

Question

Which of these is a COMMON mistake made when implementing record retention policies?

Options

  • ANot labeling the type of information to be retained
  • BNot categorizing the type of information to be retained
  • CApplying the longest retention periods to the information
  • DApplying shorter retention periods to the information

Explanation

A common mistake in record retention is applying the longest retention period without taking into account the sensitivity or importance of the corresponding information. Retaining unnecessary data has considerable costs in terms of storage and management. Less important or sensitive information can have shorter retention periods, thereby allowing longer retention periods for more important or sensitive information (see ISC2 Study Guide, chapter 5, module 1).

Topics

#Record Retention#Data Governance#Compliance#Information Management

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions