Question 1 of 30
Stakeholder feedback indicates a strong desire to rapidly deploy a new third-party marketing analytics tool to gain a competitive edge. The tool promises advanced customer segmentation capabilities but requires access to significant amounts of customer personal data. As the cybersecurity professional responsible for ensuring regulatory compliance, what is the most appropriate course of action to balance business objectives with data protection requirements, assuming the organization operates under GDPR?
Conduct a thorough assessment of the marketing tool's data processing activities, including a review of the vendor's security practices and data processing agreement, to ensure compliance with GDPR principles before deployment.
Proceed with the tool's deployment immediately to capitalize on the competitive advantage, and address any potential GDPR compliance gaps retrospectively.
Rely on the vendor's assurances that the tool is GDPR compliant and proceed with deployment, assuming their internal processes are sufficient.
Implement the marketing tool with basic security measures and plan to enhance its security posture and GDPR compliance features in subsequent phases.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free