Where should audit trail files be backed up promptly to prevent alteration?

Prepare for the PCI DSS Test with detailed questions and explanations. Use flashcards and quizzes to enhance knowledge. Ensure you're ready for your certification exam!

Multiple Choice

Where should audit trail files be backed up promptly to prevent alteration?

Explanation:
Backups of audit trail files must be kept in a tamper-evident, centralized location so you can detect alterations and preserve integrity for investigations and compliance. Promptly backing up to a centralized log server or to write-once media provides strong protection against tampering, supports consistent access controls, and makes it easier to verify and restore logs over time. Printing on paper introduces physical risk and delays; backing up to a local hard drive keeps data in the same potentially vulnerable system and lacks centralized tamper protection; a public cloud bucket can expose data through misconfigurations and broader access. Therefore, central, tamper-resistant backups are the most reliable choice.

Backups of audit trail files must be kept in a tamper-evident, centralized location so you can detect alterations and preserve integrity for investigations and compliance. Promptly backing up to a centralized log server or to write-once media provides strong protection against tampering, supports consistent access controls, and makes it easier to verify and restore logs over time. Printing on paper introduces physical risk and delays; backing up to a local hard drive keeps data in the same potentially vulnerable system and lacks centralized tamper protection; a public cloud bucket can expose data through misconfigurations and broader access. Therefore, central, tamper-resistant backups are the most reliable choice.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy