CISA Exam Preparation: Evaluating Transmission of Personally Identifiable Information (PII)

The Most Important Requirement for Evaluating PII Transmission

Prev Question Next Question

Question

Which of the following is the MOST important requirement for an IS auditor to evaluate when reviewing a transmission of personally identifiable information (PII) between two organizations?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

C.

When reviewing a transmission of personally identifiable information (PII) between two organizations, the MOST important requirement for an IS auditor to evaluate is the necessity of the transmission. Therefore, the correct answer is C.

Explanation:

A. Completeness: While it is important to ensure that the transmission of PII is complete, it is not the most critical requirement to evaluate.

B. Timeliness: Timeliness is important, but not the most important requirement.

C. Necessity: The IS auditor must evaluate the necessity of the transmission of PII between two organizations. The auditor must ensure that the transmission of PII is necessary and authorized, and that there are no other means to achieve the desired outcome. The auditor must also ensure that the PII transmitted is limited to the minimum necessary to achieve the desired outcome, and that the PII is protected during the transmission.

D. Accuracy: Accuracy is important, but not the most important requirement. The IS auditor must ensure that the PII transmitted is accurate, but this requirement is secondary to the necessity requirement.

In conclusion, the most important requirement for an IS auditor to evaluate when reviewing a transmission of personally identifiable information (PII) between two organizations is the necessity of the transmission.