itn 260 EXAM 2025 QUESTIONS AND CORRECT ANSWER The X.509 standard applies to which of the following? A) Public key infrastructure B) SSL providers C) Certificate Revocation Lists D) Digital certificates - answer>>>D) Digital certificates Which of the following is a representation of the frequency of an event, measured in a standard year? A) Annual loss expectancy (ALE) B) Annualized rate of occurrence (ARO) C) Single-loss expectancy (SLE) D) Annualized expectancy of occurrence (AEO) - answer>>>B) Annualized rate of occurrence (ARO) Which of the following represents a method of transferring risk to a third party? A) Applying controls that reduce risk impact B) creating a record of information about identified risks C) Developing and forwarding the results of a risk matrix/heat map D) purchasing cybersecurity insurance - answer>>>D) purchasing cybersecurity insurance Which of the following is not PII? A) Customer name B) Customer ID number C) Customer social security number or taxpayer identification number D) Customer Birth date - answer>>>B) Customer ID numberWhat does a privacy impact assessment do? A) it determines the gap between a company's privacy practices and required actions B) It determines the damage caused by a breach of privacy C) It determines what companies hold information