New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Eccouncil 712-50 Exam - Topic 8 Question 47 Discussion

Actual exam question for Eccouncil's 712-50 exam
Question #: 47
Topic #: 8
[All 712-50 Questions]

You have been promoted to the CISO of a big-box retail store chain reporting to the Chief Information Officer (CIO). The CIO's first mandate to you is to develop a cybersecurity compliance framework that will meet all the store's compliance requirements.

Which of the following compliance standard is the MOST important to the organization?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Colette
4 months ago
Wait, FedRAMP? Isn't that for cloud services?
upvoted 0 times
...
Cecil
4 months ago
I agree, PCI DSS is the top priority here.
upvoted 0 times
...
Haley
4 months ago
ISO 27002 is great, but PCI is a must for payment data.
upvoted 0 times
...
Andra
4 months ago
I don't know, isn't NIST more comprehensive?
upvoted 0 times
...
Polly
5 months ago
Definitely PCI DSS, it's crucial for retail!
upvoted 0 times
...
Lindy
5 months ago
ISO 27002 covers information security management, but I feel like PCI DSS is the most relevant here due to the nature of retail transactions.
upvoted 0 times
...
Brandon
5 months ago
I practiced a question similar to this, and I think FedRAMP is more for cloud services, so it might not be the best fit for a retail environment.
upvoted 0 times
...
Sena
5 months ago
I’m not entirely sure, but I think the NIST Cybersecurity Framework is more general and might not be as specific to retail compliance needs.
upvoted 0 times
...
Suzi
5 months ago
I remember studying PCI DSS in relation to retail, since it focuses on protecting payment card information. That seems crucial for a big-box store.
upvoted 0 times
...
Jettie
5 months ago
Okay, let me think this through. Salesforce is the master for sales data, and the ERP is the master for invoice, order, and payment data. So the key is to determine the proper use of these systems based on that information.
upvoted 0 times
...
Mammie
5 months ago
This looks like a straightforward risk management question. I think the answer is C - both a hold-harmless contract clause and a waiver of subrogation can be used to transfer risks.
upvoted 0 times
...
Yolando
5 months ago
Hmm, I'm a bit unsure about this one. Should we add the code cleanup to the current iteration or the next one? And do we need to get explicit approval from the product owner?
upvoted 0 times
...
Sharika
5 months ago
Wait, what were the noncovered items again? I think we need to subtract those from the total billed charges to find out what McBee pays.
upvoted 0 times
...
Rashida
5 months ago
I'm a bit confused on the differences between the options. I'll need to review my notes on cryptographic algorithms to make sure I understand which one is best for ensuring message integrity.
upvoted 0 times
...

Save Cancel