The assessor organization can issue the DSCI certification to the assessee organization if it is satisfied with the assessment outcome.
Answer : A
The entire assessment process, from commencement to submission of final report to DSCI must be completed within 2 weeks.
Answer : B
Classify the following scenario as major or minor non-conformity.
''The organization has a very mature information security policy. Lately, the organization has realized the need to focus on protection of PI. A formal PI identification exercise was done for this purpose and a mapping of PI and security controls was done. The organization has also put in place data masking technology in certain functions where the SPI was accessed by employees of a third party. However, the organization is yet to include PI specifically in its risk assessment exercise, incident management, testing, data classification and security architecture programs.''
Answer : C
__________ layer of the DSCI Privacy Framework (DPF) ensures that adequate level of awareness exists in an organization.
Answer : B
Which of the following are key contributors that would enhance the complexity in implementing security measures for protection of personal information? (Choose all that apply.)
Answer : A, B, C
Section 43A of the Information Technology (Amendment) Act, 2008 holds____________ accountable for having reasonable security practices and procedures in place to protection sensitive personal data.
Answer : C
Which of the following best describes 'Processing'?
Answer : B