ISC2 CISSP Practice Question

During a quarterly internal audit, the newly appointed Chief Privacy Officer discovers that the organization's asset register does not distinguish between publicly available information and data that could cause harm if exposed. She instructs each department to tag its records according to a new classification scheme. Which type of information should the team classify as sensitive rather than public or internal?

  • Company-wide announcements accessible to all employees.

  • Data about the organization's history that is already published.

  • Employee salary information that is handled with confidentiality measures.

  • Marketing materials that promote the brand.

ISC2 CISSP
Asset Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot