
CiscoCertified Support Technician (CCST) Cybersecurity
Domain 5Objective 3
Explain the Impact of Compliance Frameworks on Incident Handling 100-160 Practice Questions (Page 3)
Part of the Incident Handling domain, which makes up ~18% of our current practice bank. Cisco does not publish an official question count, but from its 50-minute exam (~20–35 total, ~4–6 in this domain), expect 1–2 from this objective — we provide 32 practice questions to prepare you well beyond it. (estimate)
32questions here
7free pages
8concepts
Questions 11–15
- 11
Under FERPA, when a security breach involves education records, what is the primary obligation of the educational institution?
Select an answer first - 12
When an incident is subject to multiple compliance frameworks with conflicting notification requirements, what is the best approach?
Select an answer first - 13
A multinational e-commerce company stores EU customer personal data in an Azure region in Ireland. During a routine security review, you discover that an attacker exfiltrated a database containing EU customer email addresses and order histories. The breach was detected on a Friday afternoon. What is the most immediate compliance-driven action your incident response team must take?
Select an answer first - 14
Under the GDPR, a data controller must notify the relevant supervisory authority of a personal data breach. What is the maximum time allowed for this notification after becoming aware of the breach?
Select an answer first - 15
An organization is subject to both GDPR and PCI-DSS. During an incident involving personal data and cardholder data, what should the organization do first?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “100-160” is a trademark of its owner, used for identification only.