Data Governance and Security Flashcards
7 cards from real Data Engineering practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Data Governance and Security flashcards as text
What does the 'right to be forgotten' under GDPR require organizations to do?
Answer: Delete an individual's personal data upon valid request
The right to erasure requires deleting personal data when requested.
Which data classification level typically requires the strictest handling controls?
Answer: Restricted/Confidential
Restricted or confidential data demands the strongest protections.
What is a common purpose of row-level security in a data warehouse?
Answer: Restrict which rows a user can see based on their identity
Row-level security filters visible rows per user or role.
Which framework provides a widely used set of security and privacy controls for US federal systems?
Answer: NIST
NIST publishes standards and control catalogs for federal systems.
What is the main reason to rotate access keys and credentials regularly?
Answer: Limit the window of exposure if a credential is compromised
Regular rotation shortens how long a leaked credential remains valid.
Which concept describes ensuring data residency requirements are met for a given jurisdiction?
Answer: Storing data within required geographic boundaries
Data residency requires keeping data within specified geographic regions.
What does multi-factor authentication (MFA) add to a login process?
Answer: An additional verification factor beyond a password
MFA requires more than one factor, strengthening authentication.