shieldCISSP Practice Domain 1 — Security and Risk Management Q53 of 120

Which violation occurs when a security professional discloses client vulnerability data publicly to embarrass the client?

A CISSP practice question covering Domain 1: Security and Risk Management. Try answering before reading the explanation below.

Show options & answer
A
Violation of (ISC)² Canon 3 — service to principals
✓ Correct answer
B
Violation of (ISC)² Canon 1 — protect society
C
A legal violation only
D
Not a violation if true
Why "Violation of (ISC)² Canon 3 — service to principals" is the right answer

Public disclosure to embarrass a client violates Canon 3 (diligent service to principals). It can also violate Canon 2 (act honorably) and possibly contracts/NDAs. Truth doesn't excuse breach of professional duty.

Study videos for this topic

Want to go deeper on Domain 1? Watch the full breakdown — every video is free, no account, no upsell.

Take the full CISSP practice test
120 questions, instant explanations, study-video links on every miss. No account.
Start full test →