1.5 Understand governance processes.
Objective 1.5 sits in Security Principles, which carries 26% of the Certified in Cybersecurity exam. The questions below are original, written from the official objective title above, and each explanation cites the ISC2 page it rests on.
Objective title verbatim from the official objectives. ISC2 exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
The Gramm-Leach-Bliley Act and the Safeguards Rule issued under it illustrate which governance relationship?
Correct.
Concept
Legislatures pass laws; agencies then issue regulations that put a law's requirements into enforceable operational detail. The two sit in a hierarchy, not side by side.
Why C
GLBA is an act of Congress, and the FTC's Safeguards Rule is the regulation implementing its data protection mandate for covered institutions.
Now you: objective 1.5 questions
No account needed. The explanation opens when you answer.
Sample question 1 of 3
A tax preparation firm's leadership team learns the Safeguards Rule covers its activities. What kind of obligation is that?
Sample question 2 of 3
Your compliance team asks whether its security program must copy a big bank's. What does the Rule require instead?
Sample question 3 of 3
What form must an information security program take under the Safeguards Rule?
Full Certified in Cybersecurity question bank coming
We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.
Read the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.