(ISC)2(ISC)2
CISSP · Question #994
CISSP Question #994: Real Exam Question with Answer & Explanation
The correct answer is B: When the data is being viewed, it can only be printed by authorized users.. Data-in-use controls protect sensitive information while it is actively being processed or viewed, preventing unauthorized actions on that data.
Submitted by fernanda_arg· Mar 5, 2026Asset Security
Question
Which of the following is a benefit of implementing data-in-use controls?
Options
- AIf the data is lost, it must be decrypted to be opened.
- BWhen the data is being viewed, it can only be printed by authorized users.
- CWhen the data is being viewed, it can be accessed using secure protocols.
- DIf the data is lost, it may not be accessible to unauthorized users.
Explanation
Data-in-use controls protect sensitive information while it is actively being processed or viewed, preventing unauthorized actions on that data.
Common mistakes.
- A. This describes a benefit of data-at-rest encryption, which protects data when it is stored and not actively being processed, rather than data-in-use.
- C. Accessing data using secure protocols primarily addresses data-in-transit security, ensuring confidentiality and integrity during transmission, not controls over actions taken on the data once viewed.
- D. This refers to the benefits of data-at-rest encryption or general data loss prevention (DLP) for data that is stored or has been lost, not controls specifically applied while data is actively in use.
Concept tested. Data-in-use security and controls
Reference. https://learn.microsoft.com/en-us/purview/dlp-learn-about
Topics
#data-in-use#data protection#DLP#access control
Community Discussion
No community discussion yet for this question.