Hard1 markMultiple Choice
CPA · Question 38 · Area II: Security
Which part of the NIST Privacy Framework helps organizations determine their current privacy posture and their target state?
Which part of the NIST Privacy Framework helps organizations determine their current privacy posture and their target state?
Answer options:
A.
Core
B.
Tiers
C.
Profiles
D.
Functions
How to approach this question
Recall the 3 parts: Core, Profiles, Tiers. Profiles are for 'Current vs Target'.
Full Answer
C.Profiles✓ Correct
Profiles represent the organization's specific selection of Privacy Framework Core functions, categories, and subcategories. Organizations use Current and Target Profiles to identify gaps.
Common mistakes
Confusing Tiers (maturity/risk view) with Profiles (selection of controls).
Practice the full CPA ISC Practice Exam 5
82 questions · hints · full answers · grading
More questions from this exam
Q01A service organization provides a cloud-based payroll processing application to its user entities...MediumQ02An auditor is reviewing the shared responsibility model for a client using an Infrastructure as a...HardQ03A financial institution requires a cloud deployment model that offers the highest level of contro...MediumQ04During an IT audit, you observe that a company uses a 'Hybrid Cloud' architecture. Which scenario...MediumQ05Which component of IT architecture is primarily responsible for translating domain names (like ww...Easy
Expert