CISSP Exam QuestionsBrowse all questions from this exam

CISSP Exam - Question 370


Why would a system be structured to isolate different classes of information from one another and segregate them by user jurisdiction?

Show Answer
Correct Answer: D

A system would be structured to isolate different classes of information from one another and segregate them by user jurisdiction so that the organization can vary its system policies to comply with conflicting national laws. This approach ensures that the organization adheres to different legal and regulatory standards that may apply in various regions or countries, thereby maintaining compliance and avoiding legal complications.

Discussion

8 comments
Sign in to comment
crazywai1221Option: D
Apr 8, 2023

I think answer is D, some applications are different in different countries, e.g. wechat, titok

jackdryan
May 14, 2023

C is correct

Jamati
Nov 13, 2022

Given answer is correct

invincible96Option: C
Mar 29, 2023

By structuring a system to isolate different classes of information from one another and segregating them by user jurisdiction, an organization can create a clear arrangement of its infrastructure, making it easier to manage and simplify the scope of responsibility. This can also help to prevent unauthorized access to sensitive information and reduce the risk of data breaches.

klarakOption: D
May 6, 2024

I don't love the question but I think they're aiming at D. Jurisdiction in this sense is about what regulations and laws apply to the information.

MarkSunOption: C
Mar 30, 2023

agree on C

InclusiveSTEAMOption: D
Oct 21, 2023

D. The key rationale is: +Isolating data and systems by jurisdiction allows an organization to tailor its policies and controls to meet the specific legal and regulatory requirements of that jurisdiction. +Laws and regulations often differ between countries/regions. Segregation allows localized compliance. +Other options about simplifying infrastructure or avoiding litigation may be benefits, but are not the primary driver.

SoleandheelOption: C
Dec 16, 2023

C. The organization's infrastructure is clearly arranged and scope of responsibility is simplified. Answer option C. encompasses D. which makes C. the best answer choice.

gjimenezfOption: D
Jan 30, 2024

clasiffy info to apply different policies to each one and separate by user jurisdiction to avoid issues with different laws of each state or country