IAPP CIPP-US Certified Information Privacy Professional/United States (CIPP/US) Online Training
IAPP CIPP-US Online Training
The questions for CIPP-US were last updated at Apr 27,2025.
- Exam Code: CIPP-US
- Exam Name: Certified Information Privacy Professional/United States (CIPP/US)
- Certification Provider: IAPP
- Latest update: Apr 27,2025
Which of the following is an important implication of the Dodd-Frank Wall Street Reform and Consumer Protection Act?
- A . Financial institutions must avoid collecting a customer’s sensitive personal information
- B . Financial institutions must help ensure a customer’s understanding of products and services
- C . Financial institutions must use a prescribed level of encryption for most types of customer records
- D . Financial institutions must cease sending e-mails and other forms of advertising to customers who opt out of direct marketing
Which act violates the Family Educational Rights and Privacy Act of 1974 (FERPA)?
- A . A K-12 assessment vendor obtains a student’s signed essay about her hometown from her school to use as an exemplar for public release
- B . A university posts a public student directory that includes names, hometowns, e-mail addresses,
and majors - C . A newspaper prints the names, grade levels, and hometowns of students who made the quarterly honor roll
- D . University police provide an arrest report to a student’s hometown police, who suspect him of a similar crime
According to FERPA, when can a school disclose records without a student’s consent?
- A . If the disclosure is not to be conducted through email to the third party
- B . If the disclosure would not reveal a student’s student identification number
- C . If the disclosure is to practitioners who are involved in a student’s health care
- D . If the disclosure is to provide transcripts to a school where a student intends to enroll
According to FERPA, when can a school disclose records without a student’s consent?
- A . If the disclosure is not to be conducted through email to the third party
- B . If the disclosure would not reveal a student’s student identification number
- C . If the disclosure is to practitioners who are involved in a student’s health care
- D . If the disclosure is to provide transcripts to a school where a student intends to enroll
What is the main purpose of the CAN-SPAM Act?
- A . To diminish the use of electronic messages to send sexually explicit materials
- B . To authorize the states to enforce federal privacy laws for electronic marketing
- C . To empower the FTC to create rules for messages containing sexually explicit content
- D . To ensure that organizations respect individual rights when using electronic advertising
The Video Privacy Protection Act of 1988 restricted which of the following?
- A . Which purchase records of audio visual materials may be disclosed
- B . When downloading of copyrighted audio visual materials is allowed
- C . When a user’s viewing of online video content can be monitored
- D . Who advertisements for videos and video games may target
The Cable Communications Policy Act of 1984 requires which activity?
- A . Delivery of an annual notice detailing how subscriber information is to be used
- B . Destruction of personal information a maximum of six months after it is no longer needed
- C . Notice to subscribers of any investigation involving unauthorized reception of cable services
- D . Obtaining subscriber consent for disseminating any personal information necessary to render cable services
What is the main purpose of requiring marketers to use the Wireless Domain Registry?
- A . To access a current list of wireless domain names
- B . To prevent unauthorized emails to mobile devices
- C . To acquire authorization to send emails to mobile devices
- D . To ensure their emails are sent to actual wireless subscribers
What is the main purpose of requiring marketers to use the Wireless Domain Registry?
- A . To access a current list of wireless domain names
- B . To prevent unauthorized emails to mobile devices
- C . To acquire authorization to send emails to mobile devices
- D . To ensure their emails are sent to actual wireless subscribers
What is the main purpose of requiring marketers to use the Wireless Domain Registry?
- A . To access a current list of wireless domain names
- B . To prevent unauthorized emails to mobile devices
- C . To acquire authorization to send emails to mobile devices
- D . To ensure their emails are sent to actual wireless subscribers