medium
Single Answer
0

Your company has outsourced its proprietary processes to Acme Corporation. Due to technical issues, Acme wants to include a third-party vendor to help resolve the technical issues. Which of the following must Acme consider before sending data to the third party?

Answer Options

A

This data should be encrypted before it is sent to the third-party vendor.

B

This may constitute unauthorized data sharing.

C

This may violate the privileged user role-based awareness training.

D

This may violate a nondisclosure agreement.

Correct Answer: D

Explanation

A nondisclosure agreement (NDA) protects sensitive and intellectual data from getting into the wrong hands. An NDA is a legal contract between the company and a third-party vendor to not disclose information per the agreement. Encrypted data that is sent can still be decrypted by the third-party vendor if they have the appropriate certificate or the key but does not restrict access to the data. Violating an NDA would constitute unauthorized data sharing, and a violation of privileged user role-based awareness training has nothing to do with sharing proprietary information.