ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
During requirements elicitation for a fitness-tracking app that stores users' geolocation data in the cloud, the security engineer must capture a privacy requirement addressing cross-border transfers. Which requirement best satisfies this concern?
Ensure all geolocation data is stored within the region where it was collected unless explicit legal basis for transfer is documented.
Require multi-factor authentication for users who access their historical geolocation data.
Automatically purge geolocation records after 30 days of user inactivity.
Encrypt all geolocation data at rest using AES-256 before storing it in any cloud region.
Cross-border privacy requirements focus on where personal data may be stored or processed once it leaves the country or legal jurisdiction in which it was collected. The most appropriate requirement therefore restricts storage or processing to the originating region unless a lawful transfer mechanism-such as an adequacy decision, standard contractual clauses, or user consent-has been documented. Encrypting data, setting retention limits, or enforcing multi-factor authentication are valuable security and privacy controls, but none of them specifically mitigate jurisdictional or residency risks that arise when data crosses borders. Only the option limiting data movement and mandating a legal basis directly addresses the stated concern.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is cross-border data transfer in privacy requirements?
Open an interactive chat with Bash
What are adequacy decisions and how do they impact cross-border transfers?
Open an interactive chat with Bash
Why do encryption and retention controls not satisfy cross-border concerns?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Requirements
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .