Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

IIA Exam IIA-CFSA Topic 8 Question 49 Discussion

Actual exam question for IIA's IIA-CFSA exam
Question #: 49
Topic #: 8
[All IIA-CFSA Questions]

I- Restrict access to data by business need-to-know

II- Assign Unique ID t each person with computer access

III-Restrict physical access to cardholder data

The above requirements of PCI (Payment Card Industry) achieve which one of the following

goals?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Rozella
2 months ago
Jokes on you, I just use cash. No need for all this PCI mumbo-jumbo. Though I guess it does keep the hackers at bay... Hmm, maybe I'll get a card after all.
upvoted 0 times
...
Blossom
2 months ago
Hey, if I had a credit card, I'd want these measures in place! Wouldn't want anyone getting their hands on my shopping spree data, you know?
upvoted 0 times
...
Simona
2 months ago
D is the one! Building and maintaining a secure network is what these PCI requirements are all about. Gotta keep those card transactions safe and sound.
upvoted 0 times
Rozella
18 days ago
D) Building and maintenance of a secure network
upvoted 0 times
...
Cheryl
19 days ago
C) Maintenance of information data security policy
upvoted 0 times
...
Dong
22 days ago
B) Protection of card holder
upvoted 0 times
...
Elvera
2 months ago
A) Implementation of Strong access control measures
upvoted 0 times
...
...
Lucy
2 months ago
Hmm, I'm not so sure. I think C might be the best option - these requirements seem aimed at maintaining a robust information security policy to safeguard the data.
upvoted 0 times
Lavonda
28 days ago
C) Maintenance of information data security policy
upvoted 0 times
...
Gracia
1 months ago
B) Protection of card holder
upvoted 0 times
...
Dortha
2 months ago
A) Implementation of Strong access control measures
upvoted 0 times
...
...
Hershel
3 months ago
I'd say B is the right answer. The main goal here is to protect the cardholder by ensuring their data is secure and only accessible to authorized personnel.
upvoted 0 times
Avery
2 months ago
C) Maintenance of information data security policy
upvoted 0 times
...
Solange
2 months ago
B) Protection of card holder
upvoted 0 times
...
Ashley
2 months ago
A) Implementation of Strong access control measures
upvoted 0 times
...
...
Karrie
3 months ago
Clearly, the correct answer is A. These requirements are all about implementing strong access control measures to protect sensitive cardholder data. Restricting access based on need-to-know, unique IDs, and physical access controls are key components of access control.
upvoted 0 times
Herschel
1 months ago
That's not the main goal, although it is a result of implementing strong access control measures.
upvoted 0 times
...
Staci
2 months ago
B) Protection of card holder
upvoted 0 times
...
Haydee
2 months ago
Yes, that's correct. These requirements are all about access control.
upvoted 0 times
...
Bernardo
3 months ago
A) Implementation of Strong access control measures
upvoted 0 times
...
...
Naomi
4 months ago
I think the answer is C) Maintenance of information data security policy because all the requirements mentioned are essential components of maintaining a secure information data security policy.
upvoted 0 times
...
Kris
4 months ago
I agree with Ryan. Restricting physical access to cardholder data also falls under strong access control measures, so the goal achieved by the requirements of PCI is indeed A) Implementation of Strong access control measures.
upvoted 0 times
...
Ryan
4 months ago
I think the answer is A) Implementation of Strong access control measures because restricting access to data by business need-to-know and assigning unique IDs to each person with computer access are both strong access control measures.
upvoted 0 times
...

Save Cancel