During a cloud lake review, auditors find a storage bucket of citizen personally identifiable information left publicly readable. What security baseline judgment is correct?
Select an answer to reveal the explanation.
Short Explanation
Leaving citizen identity files on a public shelf is a breach waiting to happen, cloud or not. Public buckets of PII fail the basic security baseline for a municipal lake. Rename tricks and “it’s only cloud” excuses do not fix exposure.
Full Explanation
Cloud data lakes must enforce private defaults, least-privilege access, and encryption for citizen PII. Publicly readable buckets of personal data are a classic exposure anti-pattern and require immediate remediation. Transparency portals publish curated open data, not raw identity fields. BDPC cloud security awareness starts with that baseline.