CS Professional · Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice · Cyber Crimes and Investigation Procedures
Under the Explanation to Section 43A, which sequence correctly describes how 'reasonable security practices and procedures' are determined?
Reasonable security practices are those specified in an agreement between the parties or in any law in force. Only if there is neither an agreement nor a law do the practices prescribed by the Central Government, in consultation with professional bodies, apply.
- AOnly as prescribed by the Central Government, ignoring any agreement
- BAs specified in an agreement between the parties or in any law in force; failing both, as prescribed by the Central Government in consultation with professional bodiesCorrect
- COnly as decided by the body corporate in its own policy
- DAs specified by the Certifying Authority under Section 30 in all cases
Explanation
The Explanation defines reasonable security practices as those designed to protect information from unauthorised access, damage, use, modification, disclosure or impairment, as specified in an agreement or any law in force. Only in the absence of both does the Central Government prescribe them, consulting professional bodies. Option A wrongly ignores agreements.
Did you get it right without looking?
One question tells you little. A timed set on Cyber Crimes and Investigation Procedures shows your real accuracy, how long you take and where you lose marks.
More Cyber Crimes and Investigation Procedures questions
- A bank's data-theft case is a summons-case. The accused was arrested on 1 March, and by 1 September the police investigation has still not c…
- During an online-fraud investigation, no Magistrate is available at the time the accused must be forwarded. Under Section 187(6) of the BNSS…
- Which of the following activities is expressly listed among CERT-In's functions in the area of cyber security under Section 70B(4)?
- Which of the following correctly states a duty of a Certifying Authority regarding security under Section 30 of the IT Act, 2000?
- A company's server is found to hold a hidden malicious program that spreads across its network. Under the Information Technology Act, 2000, …
- In a ransomware investigation the accused is arrested for an offence punishable with imprisonment for ten years. Under Section 187 of the BN…