Question 1 of 30
At \"SecurePay Solutions,\" a financial institution adhering to ISO/IEC 24789-1:2022 standards for card service life management, a new challenge has emerged. The institution aims to leverage transaction data to predict and improve the lifespan of their payment cards. However, they must also comply with GDPR regulations regarding the handling of personal data. The Chief Data Officer, Anya Sharma, is tasked with designing a metadata management framework that balances these competing requirements. The framework must ensure that data relevant to card service life analysis is retained while minimizing the storage of personally identifiable information (PII) beyond its necessary processing period. Considering the principles of ISO 23081-1:2017 and the legal obligations under GDPR, which of the following metadata management strategies would be MOST effective for SecurePay Solutions?
Implement a metadata schema that categorizes data based on purpose (service life analysis vs. PII), defines retention periods for each category aligning with GDPR, facilitates anonymization/pseudonymization of PII when no longer needed for its original purpose, and enforces access controls based on data sensitivity.
Adopt a metadata standard like Dublin Core to describe all transaction data uniformly, focusing on technical metadata related to card usage patterns, and rely on a centralized data governance team to manually review data retention policies every six months to ensure GDPR compliance.
Create a custom metadata schema that captures only aggregated, non-identifiable transaction data for service life analysis, discarding all individual transaction records after initial processing to minimize GDPR compliance risks, thereby simplifying the metadata management process.
Utilize a metadata management system that automatically encrypts all transaction data at rest and in transit, implementing a blanket data retention policy of five years for all data categories to ensure comprehensive service life analysis, irrespective of GDPR requirements.

Preparing for ISO/IEC 24789-1:2022 Card service life? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free