一家醫療保健公司要求所有新員工參加強制性的電腦培訓課程,由於部分員工需要處理高度敏感的患者數據,因此培訓涵蓋了數據安全的各個方面。儘管進行了此類培訓,其中一個專案團隊仍繼續發生資料外洩事件。
專案經理該做什麼?
Correct Answer: A
When data breaches continue to occur despite training, it indicates that there may be underlying issues that are not being addressed by the current measures. In such cases, the project manager should apply a root-cause analysis to identify the underlying causes of the data breaches. This could involve engaging a team of forensic experts to conduct a thorough analysis of the incidents12. The root-cause analysis will help to identify whether the breaches are due to technical vulnerabilities, procedural issues, or human factors. Once the root causes are identified, appropriate measures can be taken to address them. This could involve changes to systems, processes, or further training1234. References: What Should Companies Do After a Data Breach? | UpGuard1;
6 Steps to Developing a Data Breach Response Plan - Spectral2; Data Breach Response: A Guide for Business
- Federal Trade Commission3; What Is a Data Breach? Best Practices and Fixes for Businesses - G2