Based on the fact that Ben is responsible for the security of payment card information, his best option would be B. Encrypting the database contents.
Ben should act in a way that would protect the payment card information until it can be removed from the database.
The best way to do this would be to encrypt the database contents to ensure that they cannot be stolen until Ben can remove the information.
The full question is:
Ben is responsible for the security of payment card information stored in a database. Policy directs that he remove the information from the database, but he cannot do this for operational reasons. He obtained an exception to policy and is seeking an appropriate compensating control to mitigate the risk. What would be his best option?
A. Purchasing insurance
B. Encrypting the database contents
C. Removing the data
D. Objecting to the exception
Find out more on protecting payment data at https://brainly.com/question/19329659.
#SPJ1