Question: You re working as a security analyst for an American online retailer and have discovered what you think might be an ongoing data breach involving
Youre working as a security analyst for an American online retailer and have discovered what you think might be an ongoing data breach involving data pertaining to your overseas customers and vendors. You talk with your supervisor about this and ask if this should be reported to the authorities or somehow publicly disclosed. Your supervisor says that since none of the customers or vendors are US citizens or residents, no disclosure or reporting would be required or effective. Which statement might be your best response? This type of question contains radio buttons and checkboxes for selection of options. Use Tab for navigation and Enter or space to select the option. option A You disagree, since you think that the countries where those customers are citizens or residents may have laws that require even an American firm to do prompt notification or disclosure. option B You disagree, since you think that even US law may require some form of prompt notification to customers and to the authorities. option C You agree with your supervisor, as this makes sense. option D You suggest that perhaps the companys general counsel be asked, quickly, just in case the United States or other nations data localization or data residency laws do in fact require prompt notification or disclosure.
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
