IAPP CIPM Practice Test - Questions Answers, Page 15

List of questions
Question 141

While trying to e-mail her manager, an employee has e-mailed a list of all the company's customers, including their bank details, to an employee with the same name at a different company. Which of the following would be the first stage in the incident response plan under the General Data Protection Regulation (GDPR)?
Question 142

Which of the following is NOT a type of privacy program metric?
Question 143

Your company provides a SaaS tool for B2B services and does not interact with individual consumers. A client's current employee reaches out with a right to delete request. what is the most appropriate response?
Question 144

When a data breach incident has occurred. the first priority is to determine?
Question 145

Which of the following is NOT a main technical data control area?
Question 146

Integrating privacy requirements into functional areas across the organization happens at which stage of the privacy operational life cycle?
Question 147

Under the General Data Protection Regulation (GDPR), what must be included in a written agreement between the controller and processor in relation to processing conducted on the controller's behalf?
Question 148

Under the GDPR. when the applicable lawful basis for the processing of personal data is a legal obligation with which the controller must comply. which right can the data subject exercise?
Question 149

Which of the following is a physical control that can limit privacy risk?
Question 150

Under the General Data Protection Regulation (GDPR), what are the obligations of a processor that engages a sub-processor?
Question