CV0-002 · Question #496
The risk and compliance team mandates that all PII should be sent via secure and encrypted channels via webmail. As the SaaS administrator, which of the following is the BEST method for implementing d
The correct answer is C. Data classification matrix. To implement the risk and compliance mandate for securing PII sent via webmail, a SaaS administrator should first establish a data classification matrix. This matrix provides the framework to identify PII and subsequently apply appropriate technical controls like encryption.
Question
The risk and compliance team mandates that all PII should be sent via secure and encrypted channels via webmail. As the SaaS administrator, which of the following is the BEST method for implementing data governance?
Options
- AData custodian register
- BInformation usage policy
- CData classification matrix
- DFileshare permissions
How the community answered
(17 responses)- A6% (1)
- B6% (1)
- C76% (13)
- D12% (2)
Why each option
To implement the risk and compliance mandate for securing PII sent via webmail, a SaaS administrator should first establish a data classification matrix. This matrix provides the framework to identify PII and subsequently apply appropriate technical controls like encryption.
A data custodian register identifies individuals responsible for data assets but does not define how the data itself should be handled, secured, or communicated.
An information usage policy defines rules for data handling, but it relies on an underlying data classification to determine which policies apply to specific types of data, and it's a procedural document rather than a direct implementation method for technical security.
A data classification matrix is the fundamental component for effective data governance, as it systematically categorizes information based on sensitivity, regulatory requirements, and business impact. By classifying data, including PII, the organization can then consistently implement and automate the necessary security controls, such as ensuring PII is sent via secure and encrypted channels through webmail.
Fileshare permissions control access to files stored on a fileshare, which is not directly relevant to mandating secure and encrypted transmission of PII via webmail.
Concept tested: Data governance, data classification, and PII protection
Source: https://learn.microsoft.com/en-us/purview/data-classification-overview
Topics
Community Discussion
No community discussion yet for this question.