CompTIA Security Plus Mock Test Q343

The use of social networking sites introduces the risk of:

A. Disclosure of proprietary information
B. Data classification issues
C. Data availability issues
D. Broken chain of custody

Correct Answer: A
Section: Compliance and Operational Security

Explanation:
People and processes must be in place to prevent the unauthorized disclosure or proprietary information and sensitive information s these pose a security risk to companies. With social networking your company can be exposed to as many threats as the amount of users that make use of social networking and are not advised on security policy regarding the use of social networking.

Incorrect Answers:
B: Data classification refers to the categories that data can be divided into and of more concern would be the disclosure of proprietary information when using social networking sites.
C: Availability would not be the issue here, but rather the over exposure/over availability of your data.
D: Chain of custody issues is part of basic forensic procedures.

References:
Dulaney, Emmett and Chuck Eastton, CompTIA Security+ Study Guide, 6th Edition, Sybex, Indianapolis, 2014, pp. 335, 409- 410