CompTIA CASP+ (CAS-004) — Question 253
A domestic, publicly traded, online retailer that sells makeup would like to reduce the risks to the most sensitive type of data within the organization but also the impact to compliance. A risk analyst is performing an assessment of the collection and processing of data used within business processes. Which of the following types of data pose the GREATEST risk? (Choose two.)
Answer options
- A. Financial data from transactions
- B. Shareholder meeting minutes
- C. Data of possible European customers
- D. Customers' shipping addresses
- E. Deidentified purchasing habits
- F. Consumer product purchasing trends
Correct answer: A, C
Explanation
The correct answers, A and C, represent sensitive data that can lead to significant financial and regulatory risks if compromised, particularly given regulations like GDPR for European customers. The other options, while potentially sensitive, do not carry the same level of risk in terms of compliance and financial impact.