Skip to content
SY0-701
Security Program Management and Oversight
hard
Question 1 of 20

An organization experiences a significant data breach. During the incident response review, it is discovered that a key third-party vendor had access to the affected database for service purposes. Which third-party risk management control would have MOST helped prevent or detect this breach?

ARequiring all vendors to use the same email system
BVendor access monitoring and vendor risk assessments with contractual security requirements
CPublishing vendor names on the company website
DRequiring vendors to use the company's VPN

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion