正解:B
Comprehensive and Detailed Step-by-Step Explanation:
Thebiggest concernwhen implementing aglobal data privacy policyis thatlocal regulations may contradictthe global policy, leading tolegal and compliance risks.
* Local Regulations May Contradict the Policy (Correct Answer - B)
* Different countries havevarying data privacy laws(e.g.,GDPR in Europe,CCPA in California, PDPA in Singapore).
* A global policy mayconflict with stricter local laws, making compliancechallenging.
* Example:GDPR requiresexplicit consentfor data processing, but other jurisdictions may allowimplied consent.
* Requirements May Become Unreasonable (Incorrect - A)
* Not a primary risk; compliance is more critical.
* Conflicts with Application Requirements (Incorrect - C)
* Applications shouldadapt to regulations, not the other way around.
* Local Management Resistance (Incorrect - D)
* Management acceptance is important but can beaddressed through training.
References:
* ISACA CISA Review Manual
* GDPR (General Data Protection Regulation)
* ISO 27701 (Privacy Information Management System)