ISC2 CISSP Practice Question

A healthcare organization is developing a new patient portal system. The CISO has instructed the project team to follow a proactive rather than reactive approach to data protection throughout the development lifecycle. Which approach best demonstrates the principle the CISO is emphasizing?

  • Adding detailed audit logging capabilities to track user activities once the system goes live

  • Conducting a comprehensive data flow assessment during the requirements phase to identify potential risks before architecture decisions are made

  • Implementing strong encryption protocols after the system architecture has been finalized

  • Creating detailed compliance documentation that will be reviewed by legal counsel before system deployment

ISC2 CISSP
Security Architecture and Engineering
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot