E20-918 · Question #3
An enterprise has decided to implement a new service that will process credit card information. They will deploy this service within their private cloud. They have a relationship with a public cloud p
The correct answer is A. The card number is masked as it is typed and is immediately encrypted and securely sent directly. See the full explanation below for the reasoning.
Question
An enterprise has decided to implement a new service that will process credit card information. They will deploy this service within their private cloud. They have a relationship with a public cloud provider that claims to be PCI compliant. The enterprise wishes to implement a service that is PCI compliant with the least amount of effort. The service is protected by a policy-based intrusion detection system. Cardholder data is securely transmitted to the web interface. Which additional design elements would best be suited for this implementation?
Options
- AThe card number is masked as it is typed and is immediately encrypted and securely sent directly
- BThe card number is masked as it is typed and is immediately encrypted, stored, and securely sent
- CThe card number is masked as it is typed and is immediately encrypted and securely sent directly
- DThe card number is masked as it is typed and is immediately encrypted and securely sent to both
How the community answered
(49 responses)- A84% (41)
- B2% (1)
- C4% (2)
- D10% (5)
Community Discussion
No community discussion yet for this question.