
EC-CouncilEthical Hacking Essentials
Domain 1Objective 4
Information Security Laws, Regulations, and Standards EHE Practice Questions (Page 6)
Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.
46questions here
10free pages
4concepts
Questions 26–30
- 26
A European e-commerce company processes customer payment card data and personal data of EU residents. The company wants to align with both GDPR and PCI DSS. Which combined requirement must the company satisfy?
Select an answer first - 27
A global company stores customer data in multiple regions. The company receives a request from a customer in Germany to delete their personal data. The company also has a legal obligation to retain transaction records for tax purposes. How should the company respond?
Select an answer first - 28
A U.S.-based healthcare provider stores patient records in a cloud database and shares access with a third-party billing company. The provider wants to ensure that both organizations handle the data in a way that satisfies U.S. healthcare privacy rules. Which action is most directly required by the relevant regulation?
Select an answer first - 29
A small online retailer wants to improve its security posture but has limited budget and staff. The retailer is not required to comply with any specific regulation but wants a practical, risk-based approach to identify and prioritize security improvements. Which framework is most suitable?
Select an answer first - 30
A software developer in the United States discovers that a former employer's web application has a critical vulnerability that exposes customer data. The developer still has valid credentials to the system. Which action is most legally and ethically appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.