nerdexam
CompTIA

DA0-002 · Question #107

A data breach occurs at a company. Which of the following actions should be taken?

The correct answer is B. Tell the company management team and then tell regulatory agencies. Following a data breach, the immediate and proper protocol involves informing the company's management team and subsequently notifying relevant regulatory agencies, as legal and ethical obligations dictate.

Data Governance

Question

A data breach occurs at a company. Which of the following actions should be taken?

Options

  • AMake an announcement on social media so customers are aware as soon as possible.
  • BTell the company management team and then tell regulatory agencies.
  • CKeep the incident a secret until the issue is resolved.
  • DInform the entire IT sector, but ask for discretion.

How the community answered

(41 responses)
  • A
    7% (3)
  • B
    71% (29)
  • C
    17% (7)
  • D
    5% (2)

Why each option

Following a data breach, the immediate and proper protocol involves informing the company's management team and subsequently notifying relevant regulatory agencies, as legal and ethical obligations dictate.

AMake an announcement on social media so customers are aware as soon as possible.

While informing customers is important, making an announcement on social media immediately without a coordinated response and regulatory notification plan can cause panic and may violate legal guidelines.

BTell the company management team and then tell regulatory agencies.Correct

The first critical steps after a data breach are to inform the company management team, who can then initiate the incident response plan, and subsequently notify regulatory agencies as legally required. Many regulations (e.g., GDPR, CCPA) mandate reporting data breaches to authorities within a specific timeframe, making this a legal and ethical obligation.

CKeep the incident a secret until the issue is resolved.

Keeping the incident a secret is unethical, often illegal, and can lead to severe penalties, reputational damage, and loss of trust if the breach is later discovered.

DInform the entire IT sector, but ask for discretion.

Informing the entire IT sector is an overly broad and inappropriate action; information sharing is typically done discreetly and through established channels with trusted partners, not broadly.

Concept tested: Data breach incident response, regulatory compliance

Source: https://learn.microsoft.com/en-us/azure/security/fundamentals/incident-response-overview

Topics

#Data breach#Incident response#Regulatory compliance#Data governance

Community Discussion

No community discussion yet for this question.

Full DA0-002 Practice