Question 1 of 30
The Municipality of Oakhaven is transitioning to a fully digital records management system to improve citizen access to municipal services, aligning with the principles of ISO 23081-1:2017. This system will contain sensitive personal data, including tax records, property ownership details, and social service applications. The mayor, Elias Thorne, is concerned about balancing the increased accessibility with the need to protect citizen privacy under existing data protection laws. The IT Director, Anya Sharma, proposes several risk management strategies. Considering the requirements of ISO 23081-1:2017 and the need to comply with data protection regulations, which of the following approaches is the MOST appropriate for Oakhaven to adopt in managing the risks associated with this new system?
Develop a comprehensive risk treatment plan that includes risk reduction strategies, such as access controls, encryption, and regular monitoring, while also outlining communication and consultation processes with stakeholders.
Implement a risk avoidance strategy by restricting citizen access to all sensitive personal data, ensuring that only authorized municipal employees can view such information.
Pursue a risk sharing strategy by obtaining cybersecurity insurance and outsourcing data storage to a third-party provider, thereby transferring the financial and operational responsibility for data protection.
Adopt a risk retention strategy, accepting the potential consequences of data breaches and focusing on reactive measures, such as incident response plans, in case of a security incident.

Preparing for ISO 23081-1:2017 Information and documentation -- Managing metadata for records? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free