ExamGecko
Home Home / IAPP / CIPM
Question list
Search
Search

List of questions

Search

Related questions











Question 141 - CIPM discussion

Report
Export

While trying to e-mail her manager, an employee has e-mailed a list of all the company's customers, including their bank details, to an employee with the same name at a different company. Which of the following would be the first stage in the incident response plan under the General Data Protection Regulation (GDPR)?

A.

Notification to data subjects.

Answers
A.

Notification to data subjects.

B.

Containment of impact of breach.

Answers
B.

Containment of impact of breach.

C.

Remediation offers to data subjects.

Answers
C.

Remediation offers to data subjects.

D.

Notification to the Information Commissioner's Office (ICO).

Answers
D.

Notification to the Information Commissioner's Office (ICO).

Suggested answer: B

Explanation:

The first stage in the incident response plan under the General Data Protection Regulation (GDPR) for this scenario would be to contain the impact of the breach. This means taking immediate action to stop the unauthorized access or disclosure of personal data, and to prevent it from happening again in the future. This could involve revoking access to the data, notifying the employee who mistakenly sent the data, and implementing security measures to prevent similar breaches from occurring in the future.

https://gdpr-info.eu/art-33-gdpr/

https://gdpr-info.eu/art-34-gdpr/

asked 22/11/2024
Ricardo de Sá Carvalho
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first