Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

PCI CPSA Exam - Topic 1 Question 25 Discussion

During an assessment you ask to see employee records for employees with access to the HS
B) Employee information must be securely destroyed (e.g. securely wiped) within 2 years (after termination of contract)
A) The records include information about the screening process, including background information from the employee application process. The oldest background Information that is available is for an employee that left the vendor (terminated their contract) one year previously. You note this as non-compliant, why?
A) Employee information, including background checks, must be stored for at least seven years
C) The vendor must retain the background information for at least 18 months after termination of contract
D) The vendor must only retain background information for all current employees, not for those that have been terminated

PCI CPSA Exam - Topic 1 Question 25 Discussion

Actual exam question for PCI's CPSA exam
Question #: 25
Topic #: 1
[All CPSA Questions]

During an assessment you ask to see employee records for employees with access to the HS

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

0/2000 characters
Hana
6 months ago
The 18 months retention sounds right for vendors, but not for all cases.
upvoted 0 times
...
Eva
6 months ago
No way, I thought they only needed to keep it for current employees.
upvoted 0 times
...
Suzan
7 months ago
Wait, I thought it was only 5 years for some industries?
upvoted 0 times
...
Bea
7 months ago
Totally agree, that's standard practice!
upvoted 0 times
...
Artie
7 months ago
Employee records should be kept for at least seven years.
upvoted 0 times
...
Krissy
7 months ago
I vaguely recall that there are strict guidelines about how long to keep background information, and I think it’s definitely longer than one year.
upvoted 0 times
...
Pilar
7 months ago
I’m a bit confused about the rules for terminated employees. I thought we only needed to keep records for current employees, but that doesn’t seem right.
upvoted 0 times
...
Harrison
8 months ago
I think I saw a practice question that mentioned retaining background checks for at least 18 months after termination. That might be relevant here.
upvoted 0 times
...
Cassandra
8 months ago
I remember something about employee records needing to be kept for a specific duration, but I’m not sure if it’s seven years or something shorter.
upvoted 0 times
...
Dierdre
8 months ago
Ah, I see the issue now. The vendor needs to retain the background information for at least 18 months after termination of contract, not just one year. I think option C is the correct answer.
upvoted 0 times
...
Maia
8 months ago
Easy peasy! The answer is clearly B - employee information must be securely destroyed within 2 years after termination of contract. Anything longer than that is non-compliant.
upvoted 0 times
...
Royal
8 months ago
I'm a bit confused on this one. Is it really seven years, or is there some other requirement I'm missing? I'll need to double-check the details before answering.
upvoted 0 times
...
Lemuel
8 months ago
Okay, I think I've got this. The key is that employee information, including background checks, must be stored for at least seven years, so the one-year retention period is non-compliant.
upvoted 0 times
...
Laquanda
8 months ago
Hmm, this seems like a tricky one. I'll need to carefully review the requirements around employee record retention to determine the correct answer.
upvoted 0 times
...
Jaime
8 months ago
Hmm, the idea of Issues Management helping to decentralize risk at a high level is interesting. I'll need to think about how that could be leveraged by other Archer tools.
upvoted 0 times
...
Avery
8 months ago
Hmm, I'm a bit confused by the syntax here. I'll need to review the DBMS_REDACT function documentation to make sure I understand the different options before answering.
upvoted 0 times
...
Buffy
8 months ago
This seems like a straightforward regulatory question. I'll read through the options carefully and try to recall the key points from the Interagency Statement.
upvoted 0 times
...
Carylon
8 months ago
I'm a bit unsure about this one. I think it might be the History Count, but I need to double-check what that actually does.
upvoted 0 times
...
Linette
1 year ago
Haha, securely wiped within 2 years? What is this, the Dark Ages? Everyone knows data should be stored forever... or at least until the aliens come to take over.
upvoted 0 times
...
Roxanne
1 year ago
Ugh, these HR policy questions are the worst. I can never remember the specific retention periods. Maybe I should just guess and hope for the best.
upvoted 0 times
Desiree
12 months ago
C) The vendor must retain the background information for at least 18 months after termination of contract
upvoted 0 times
...
Billi
12 months ago
B) Employee information must be securely destroyed (e.g. securely wiped) within 2 years (after termination of contract)
upvoted 0 times
...
Dyan
1 year ago
A) Employee information, including background checks, must be stored for at least seven years
upvoted 0 times
...
...
Raelene
1 year ago
Seriously? Only 1 year? That's way too short. I'm pretty sure the correct answer is A - 7 years minimum.
upvoted 0 times
...
Kip
1 year ago
Hmm, this seems like a tricky one. I'm not sure if the 1-year retention period is compliant, but I guess we'll have to check the regulations to be sure.
upvoted 0 times
Malcom
12 months ago
C) The vendor must retain the background information for at least 18 months after termination of contract
upvoted 0 times
...
Stefany
1 year ago
C) The vendor must retain the background information for at least 18 months after termination of contract
upvoted 0 times
...
Meghann
1 year ago
B) Employee information must be securely destroyed (e.g. securely wiped) within 2 years (after termination of contract)
upvoted 0 times
...
Katie
1 year ago
A) Employee information, including background checks, must be stored for at least seven years
upvoted 0 times
...
Son
1 year ago
B) Employee information must be securely destroyed (e.g. securely wiped) within 2 years (after termination of contract)
upvoted 0 times
...
Ivette
1 year ago
A) Employee information, including background checks, must be stored for at least seven years
upvoted 0 times
...
...
Carmelina
1 year ago
Oh, that makes sense. It's important to follow regulations to protect sensitive information.
upvoted 0 times
...
Lynelle
1 year ago
I think it's because of compliance regulations. We need to store background information for at least seven years.
upvoted 0 times
...
Carmelina
1 year ago
Why do we need to keep employee records for so long?
upvoted 0 times
...

Save Cancel