ExamGecko
Question list
Search
Search

Question 471 - CISM discussion

Report
Export

Which of the following should an organization do FIRST when confronted with the transfer of personal data across borders?

A.
Define policies and standards for data processing.
Answers
A.
Define policies and standards for data processing.
B.
Implement applicable privacy principles
Answers
B.
Implement applicable privacy principles
C.
Assess local or regional regulations
Answers
C.
Assess local or regional regulations
D.
Research cyber insurance policies
Answers
D.
Research cyber insurance policies
Suggested answer: C

Explanation:

Before transferring personal data across borders, an organization should first assess the local or regional regulations that apply to the data protection and privacy of the data subjects. This will help the organization to identify the legal requirements and risks involved in the data transfer, and to choose the appropriate tools and safeguards to ensure compliance and protection. For example, the organization may need to obtain consent from the data subjects, use adequacy decisions, standard contractual clauses, or other mechanisms to ensure an adequate level of protection in the third country, or rely on specific derogations for certain situations. The other options are not the first steps to take, although they may be relevant at later stages of the data transfer process.Reference=

Guide to the cross-border transfer of personal data in the GDPR

New guidance issued by the EDPB on international transfers of personal data

Requirements for transferring personal information across borders

asked 01/10/2024
Juliana Correa Zapat
26 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first