Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

IAPP CIPM Exam - Topic 6 Question 97 Discussion

A systems audit uncovered a shared drive folder containing sensitive employee data with no access controls and therefore was available for all employees to view. What is the first step to mitigate further risks?
D) Restrict access to the folder.
A) Notify all employees whose information was contained in the file.
B) Check access logs to see who accessed the folder.
C) Notify legal counsel of a privacy incident.

IAPP CIPM Exam - Topic 6 Question 97 Discussion

Actual exam question for IAPP's CIPM exam
Question #: 97
Topic #: 6
[All CIPM Questions]

A systems audit uncovered a shared drive folder containing sensitive employee data with no access controls and therefore was available for all employees to view. What is the first step to mitigate further risks?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
But we should also check access logs first, right? B could help identify who saw it.
upvoted 0 times
...
Glynda
5 days ago
Agreed, restricting access is essential to prevent further leaks.
upvoted 0 times
...
Madalyn
10 days ago
I think D is the best choice. Immediate action is crucial.
upvoted 0 times
...
Amie
15 days ago
It’s a tough call, but D should come first to protect data.
upvoted 0 times
...
Launa
20 days ago
C is important too. We should inform legal about the breach.
upvoted 0 times
...
Basilia
26 days ago
True, but if we don’t restrict access, more people could see it.
upvoted 0 times
...
Danilo
1 month ago
But what about B? We need to know who accessed it first.
upvoted 0 times
...
Margart
1 month ago
Agreed, restricting access prevents further exposure.
upvoted 0 times
...
Dottie
1 month ago
I think D is the best option. Immediate action is crucial.
upvoted 0 times
...
Marge
2 months ago
I disagree, notifying employees first could cause panic.
upvoted 0 times
...
Alex
2 months ago
Notifying legal counsel should be the priority here.
upvoted 0 times
...
Solange
2 months ago
Surprised this wasn't caught earlier! How did it even happen?
upvoted 0 times
...
Pearlene
2 months ago
I think checking access logs is important too.
upvoted 0 times
...
Brittni
2 months ago
Definitely need to restrict access to the folder first!
upvoted 0 times
...
Linsey
2 months ago
Agreed, D should be the priority to prevent further leaks!
upvoted 0 times
...
Roxane
3 months ago
Not sure if notifying all employees is the best first step.
upvoted 0 times
...
Allene
3 months ago
Wait, how did they not have access controls in the first place?
upvoted 0 times
...
Aimee
4 months ago
I think C is important too, gotta involve legal.
upvoted 0 times
...
Katlyn
5 months ago
Definitely D, restricting access is crucial!
upvoted 0 times
...
Chanel
5 months ago
I agree with restricting access first, but I wonder if notifying employees is also necessary. It feels like there are multiple layers to consider here.
upvoted 0 times
...
Rosalia
5 months ago
I practiced a similar question where we had to assess risks. I feel like checking access logs could help understand the impact, but it might not be the immediate step.
upvoted 0 times
...
Jarvis
5 months ago
I'm not entirely sure, but I remember something about notifying legal counsel being important in these situations. Maybe that's a priority too?
upvoted 0 times
...
Vernice
5 months ago
I think the first step should be to restrict access to the folder. It seems like a basic security measure to prevent further exposure.
upvoted 0 times
...

Save Cancel