Based on the scenario, Nationwide Grill needs to create better employee awareness of the company's privacy program by doing what?
SCENARIO Please use the following to answer the next QUESTION: Natalia, CFO of the Nationwide Grill restaurant chain, had never seen her fellow executives so anxious. Last week, a data processing firm used by the company reported that its system may have been hacked, and customer data such as names,...
What United States federal law requires financial institutions to declare their personal data collection practices?
What United States federal law requires financial institutions to declare their personal data collection practices?A . The Kennedy-Hatch Disclosure Act of 1997.B . The Gramm-Leach-Bliley Act of 1999.C . SUPCLA, or the federal Superprivacy Act of 2001.D . The Financial Portability and Accountability Act of 2006.View AnswerAnswer: B Explanation: The...
How would you most effectively execute this responsibility?
As a Data Protection Officer, one of your roles entails monitoring changes in laws and regulations and updating policies accordingly. How would you most effectively execute this responsibility?A . Consult an external lawyer.B . Regularly engage regulators.C . Attend workshops and interact with other professionals.D . Subscribe to email list-serves...
Which is TRUE about the scope and authority of data protection oversight authorities?
Which is TRUE about the scope and authority of data protection oversight authorities?A . The Office of the Privacy Commissioner (OPC) of Canada has the right to impose financial sanctions on violators.B . All authority in the European Union rests with the Data Protection Commission (DPC).C . No one agency...
What have experts identified as an important trend in privacy program development?
What have experts identified as an important trend in privacy program development?A . The narrowing of regulatory definitions of personal information.B . The rollback of ambitious programs due to budgetary restraints.C . The movement beyond crisis management to proactive prevention.D . The stabilization of programs as the pace of new...
program? How can you build on your success?
SCENARIO Please use the following to answer the next QUESTION: As the Director of data protection for Consolidated Records Corporation, you are justifiably pleased with your accomplishments so far. Your hiring was precipitated by warnings from regulatory agencies following a series of relatively minor data breaches that could easily have...
Knowing that the regulator is now investigating, what would be the best step to take?
SCENARIO Please use the following to answer the next QUESTION: Perhaps Jack Kelly should have stayed in the U.S. He enjoys a formidable reputation inside the company, Special Handling Shipping, for his work in reforming certain "rogue" offices. Last year, news broke that a police sting operation had revealed a...
What is the most realistic step the organization can take to help diminish liability in the event of another incident?
SCENARIO Please use the following to answer the next QUESTION: Natalia, CFO of the Nationwide Grill restaurant chain, had never seen her fellow executives so anxious. Last week, a data processing firm used by the company reported that its system may have been hacked, and customer data such as names,...
What does this example best illustrate about training requirements for privacy protection?
SCENARIO Please use the following to answer the next QUESTION: Perhaps Jack Kelly should have stayed in the U.S. He enjoys a formidable reputation inside the company, Special Handling Shipping, for his work in reforming certain "rogue" offices. Last year, news broke that a police sting operation had revealed a...
For an organization that has just experienced a data breach, what might be the least relevant metric for a company's privacy and governance team?
For an organization that has just experienced a data breach, what might be the least relevant metric for a company's privacy and governance team?A . The number of security patches applied to company devices.B . The number of privacy rights requests that have been exercised.C . The number of Privacy...