IAPP CIPP-E Practice Test - Questions Answers, Page 30

List of questions
Question 291

Through a combination of hardware failure and human error, the decryption key for a bank's customer account transaction database has been lost. An investigation has determined that this was not the result of hacking or malfeasance, simply an unfortunate combination of circumstances. Which of the following accurately indicates the nature of this incident?
Question 292

The Murla HB Club should have carried out a DPIA before the installation of the new access system AND at what other time?
Question 293

What monitoring may lawfully be performed within the scope of Gentle Hedgehog's business?
Question 294

Start-up company MagicAl is developing an AI system that will be part of a medical device that detects skin cancer. To take measures against potential bias in its AI system, the IT team decides to collect data about users' ethnic origin, nationality, and gender. Which would be the most appropriate legal basis for this processing under GDPR, Article 9 (Processing of special categories of personal data)?
Question 295

According to the AI Act, a provider of a high-risk AI system has all of the following obligations EXCEPT?
Question 296

What is the main purpose of the EU Data Act?
Question 297

Once an organization has conducted an internal investigation to determine the scope of a ransomware attack, what is the appropriate next step in the process?
Question