easymultiple choiceObjective-mapped

A policy states that sensitive data must be encrypted, but it does not say which encryption strength to use. The security architect wants a document that lists the exact approved encryption settings for systems to follow. What document is needed?

Question 1easymultiple choice
Full question →

A policy states that sensitive data must be encrypted, but it does not say which encryption strength to use. The security architect wants a document that lists the exact approved encryption settings for systems to follow. What document is needed?

Answer choices

Why each option matters

Good practice is not just finding the correct option. The wrong answers often show the exact trap the exam wants you to fall into.

A

Distractor review

A procedure, because it explains the step-by-step order for handling every file.

Procedures describe how to perform tasks, but they do not usually define mandatory technical settings.

B

Best answer

A standard, because it specifies the required technical values and configurations.

A standard is the right document when the organization needs exact, mandatory technical settings such as approved encryption strength or configuration values. The policy provides the high-level requirement, while the standard translates that requirement into measurable controls that systems and auditors can follow consistently.

C

Distractor review

A guideline, because it gives suggestions that teams may choose to adopt.

Guidelines are optional recommendations, so they are not suitable for required encryption settings.

D

Distractor review

A memo, because it is the fastest way to tell teams about a new requirement.

A memo may communicate information, but it is not the formal control document for security requirements.

Common exam trap

Common exam trap: answer the scenario, not the keyword

Many certification questions include familiar terms but test a specific constraint. Read the exact wording before choosing an answer that is generally true but wrong for this case.

Technical deep dive

How to think about this question

This question should be treated as a scenario, not a definition check. Identify the problem, the constraint and the best action. Then compare each option against those facts.

KKey Concepts to Remember

  • Read the scenario before looking for a memorised answer.
  • Find the constraint that changes the correct option.
  • Eliminate answers that are true in general but not in this case.
  • Use explanations to understand the rule behind the answer.

TExam Day Tips

  • Underline the problem statement mentally.
  • Watch for words such as best, first, most likely and least administrative effort.
  • Review why wrong options are wrong, not only why the correct option is correct.

Related practice questions

Related SY0-701 practice-question pages

Use these pages to review the topic behind this question. This is how one missed question becomes focused revision.

More questions from this exam

Keep practising from the same exam bank, or move into a focused topic page if this question exposed a weak area.

FAQ

Questions learners often ask

What does this SY0-701 question test?

Read the scenario before looking for a memorised answer.

What is the correct answer to this question?

The correct answer is: A standard, because it specifies the required technical values and configurations. — A standard is correct because the organization needs a formal document that turns the policy statement into specific, mandatory technical settings. Policies say what must happen at a high level, while standards define the exact requirements that systems must meet. For encryption, that might include approved algorithms, key sizes, or minimum configuration values. Why others are wrong: A procedure explains the order of tasks, not the required technical baseline. A guideline is only advisory and would not enforce uniform security settings. A memo can announce changes, but it is not the correct governance artifact for defining mandatory encryption requirements.

What should I do if I get this SY0-701 question wrong?

Then try more questions from the same exam bank and focus on understanding why the wrong options are tempting.

Discussion

Loading comments…

Sign in to join the discussion.