Lyra
Learn
AI Learning Platform
π Midnight
π Comfort
π₯ Ember
π Paper
β Contrast
Exams
Sign in to track progress
β Back to the lesson
Module 7 Β· Quiz
Protecting Sensitive Records
1. What does the principle of 'least privilege' entail regarding access to sensitive records?
Every user should have access to all records for ease of use
Users and services should have the minimum access necessary for their roles
Each user must be a database owner to manage access effectively
Only administrators should have any access to sensitive data
2. Which encryption method is advised for data in transit according to the lesson?
No encryption is necessary for internal communications
TLS on every hop, including app-to-database
Encryption is only necessary for sensitive personal information
Using a one-time encryption key for every session
3. What is the primary purpose of an audit trail in a public-sector transcript-analysis system?
To monitor performance of the application
To track who accessed and changed sensitive records
To provide backup in case of data loss
To maintain user satisfaction metrics
4. What is the importance of having a data retention schedule in place?
To keep all records indefinitely for historical reference
To reduce the number of records to make it easier for users
To determine how long records must be retained and when to dispose of them
To allow developers unlimited access to sensitive information
Submit answers
Continue: Secrets, Config, and Security Headers β
Review this lesson
Retake quiz