Certified Information Systems Security Professional (CISSP) — Question 320

Under the General Data Protection Regulation (GDPR), what is the maximum amount of time allowed for reporting a personal data breach?

Answer options

Correct answer: C

Explanation

The correct answer is C, 72 hours, as GDPR mandates that data breaches must be reported to the relevant authority within this timeframe. Options A, B, and D are incorrect because they exceed or fall short of the stipulated 72-hour limit set by the regulation.