IAPP CIPP-US Practice Test - Questions Answers, Page 9
List of questions
Related questions
What role does the U.S. Constitution play in the area of workplace privacy?
It provides enforcement resources to large employers, but not to small businesses
It provides legal precedent for physical information security, but not for electronic security
It provides contractual protections to members of labor unions, but not to employees at will
It provides significant protections to federal and state governments, but not to private-sector employment
Which action is prohibited under the Electronic Communications Privacy Act of 1986?
Intercepting electronic communications and unauthorized access to stored communications
Monitoring all employee telephone calls
Accessing stored communications with the consent of the sender or recipient of the message
Monitoring employee telephone calls of a personal nature
Which of the following does Title VII of the Civil Rights Act prohibit an employer from asking a job applicant?
Questions about age
Questions about a disability
Questions about a national origin
Questions about intended pregnancy
How did the Fair and Accurate Credit Transactions Act (FACTA) amend the Fair Credit Reporting Act (FCRA)?
It expanded the definition of ''consumer reports'' to include communications relating to employee investigations
It increased the obligation of organizations to dispose of consumer data in ways that prevent unauthorized access
It stipulated the purpose of obtaining a consumer report can only be for a review of the employee's credit worthiness
It required employers to get an employee's consent in advance of requesting a consumer report for internal investigation purposes
Which federal act does NOT contain provisions for preempting stricter state laws?
The CAN-SPAM Act
The Children's Online Privacy Protection Act (COPPA)
The Fair and Accurate Credit Transactions Act (FACTA)
The Telemarketing Consumer Protection and Fraud Prevention Act
Which of the following is commonly required for an entity to be subject to breach notification requirements under most state laws?
The entity must conduct business in the state
The entity must have employees in the state
The entity must be registered in the state
The entity must be an information broker
What is the most likely reason that states have adopted their own data breach notification laws?
Many states have unique types of businesses that require specific legislation
Many lawmakers believe that federal enforcement of current laws has not been effective
Many types of organizations are not currently subject to federal laws regarding breaches
Many large businesses have intentionally breached the personal information of their customers
Which federal law or regulation preempts state law?
Health Insurance Portability and Accountability Act
Controlling the Assault of Non-Solicited Pornography and Marketing Act
Telemarketing Sales Rule
Electronic Communications Privacy Act of 1986
More than half of U.S. states require telemarketers to?
Identify themselves at the beginning of a call
Obtain written consent from potential customers
Register with the state before conducting business
Provide written contracts for customer transactions
What does the Massachusetts Personal Information Security Regulation require as it relates to encryption of personal information?
The encryption of all personal information of Massachusetts residents when all equipment is located in Massachusetts.
The encryption of all personal information stored in Massachusetts-based companies when all equipment is located in Massachusetts.
The encryption of personal information stored in Massachusetts-based companies when stored on portable devices.
The encryption of all personal information of Massachusetts residents when stored on portable devices.
Question