
NetAppCertified Cyber Resiliency Expert
Domain 4Objective 3
Determine How to Classify Data CERTIFIED-CYBER-RESILIENCY-EXPERT Practice Questions (Page 6)
Part of the Governance and Compliance domain, which accounts for 12% of the CERTIFIED-CYBER-RESILIENCY-EXPERT exam. NetApp does not publish an official question count, but from its 90-minute exam (~35–60 total, ~4–7 in this domain), expect 1–2 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
13concepts
12%of the exam
Questions 26–30
- 26
A healthcare provider is subject to HIPAA and must ensure that all protected health information (PHI) is classified and protected. They are implementing a data classification program. What is the primary regulatory driver for classifying PHI?
Select an answer first - 27
An organization has a mix of structured data in SQL databases and unstructured data in network shares and Microsoft 365. The security team needs to build a complete data inventory to support a new classification initiative. They have limited staff and need to prioritize the most efficient method. What should they do first?
Select an answer first - 28
What is the primary purpose of aligning data classification policies with broader governance and compliance frameworks?
Select an answer first - 29
A multinational company operates in the EU and the US. It must comply with GDPR for EU personal data and with various US state privacy laws. The current classification scheme uses four levels: Public, Internal, Confidential, and Restricted. The legal team has determined that EU personal data must be treated as 'Restricted' regardless of its content, while US state privacy laws allow a more granular approach. The company wants to avoid over-classifying data, which would increase operational overhead. What is the best approach to align the classification scheme with these regulatory drivers?
Select an answer first - 30
A company is rolling out a data classification program. They want to ensure that new files created by employees are automatically classified at the point of creation, and that the classification is applied consistently across all file types. They use Microsoft 365 and have an on-premises file server. What should they implement?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by NetApp. “CERTIFIED-CYBER-RESILIENCY-EXPERT” is a trademark of its owner, used for identification only.