IAPP
CIPM · Question #251
A systems audit uncovered a shared drive folder containing sensitive employee data with no access controls and therefore was available for all employees to view. What is the first step to mitigate…
The correct answer is D. Restrict access to the folder. See the full explanation below for the reasoning.
Question
A systems audit uncovered a shared drive folder containing sensitive employee data with no access controls and therefore was available for all employees to view. What is the first step to mitigate further risks?
Options
- ANotify all employees whose information was contained in the file.
- BCheck access logs to see who accessed the folder.
- CNotify legal counsel of a privacy incident.
- DRestrict access to the folder.
How the community answered
(49 responses)- A14% (7)
- B4% (2)
- C8% (4)
- D73% (36)
Community Discussion
No community discussion yet for this question.