
Certified in Cybersecurity
Domain 5Objective 1
5.1 - Understand Data Security CC Practice Questions (Page 4)
Part of the Security Operations domain, which accounts for 18% of the CC exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 2–4 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
9concepts
18%of the exam
Questions 16–20
- 16
A financial services company stores customer account records in a shared network drive. The compliance team requires that only authorized personnel can access the files, and that the files be retained for seven years per regulatory requirements. The IT team is implementing a data governance policy. Which combination of actions should the IT team take first?
Select an answer first - 17
What is the main benefit of labeling data with its classification?
Select an answer first - 18
Which of the following is a common data classification level?
Select an answer first - 19
A company wants to ensure that a contract sent to a client has not been altered and that it genuinely came from the company. Which cryptographic technique should they use?
Select an answer first - 20
A multinational corporation is implementing a data classification policy. They have data that is subject to different regulatory requirements in different countries: some data must be retained for 5 years, other data for 10 years. The company also wants to minimize storage costs. Which approach should they take?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CC” is a trademark of its owner, used for identification only.