In light of the requirements of Article 32 of the GDPR (related to the Security of Processing), which practice should the company institute?

SCENARIO Please use the following to answer the next question: You have just been hired by a toy manufacturer based in Hong Kong. The company sells a broad range of dolls, action figures and plush toys that can be found internationally in a wide variety of retail stores. Although the...

December 30, 2020 No Comments READ MORE +

With regard to TripBliss Inc.’s use of website cookies, which of the following statements is correct?

SCENARIO Please use the following to answer the next question: TripBliss Inc. is a travel service company which has lost substantial revenue over the last few years. Their new manager, Oliver, suspects that this is partly due to the company’s outdated website. After doing some research, he meets with a...

December 29, 2020 2 Comments READ MORE +

With the issue of consent, the GDPR allows member states some choice regarding what?

With the issue of consent, the GDPR allows member states some choice regarding what?A . The mechanisms through which consent may be communicatedB . The circumstances in which silence or inactivity may constitute consentC . The age at which children must be required to obtain parental consentD . The timeframe...

December 29, 2020 No Comments READ MORE +

According to the E-Commerce Directive 2000/31/EC, where is the place of “establishment” for a company providing services via an Internet website confirmed by the GDPR?

According to the E-Commerce Directive 2000/31/EC, where is the place of “establishment” for a company providing services via an Internet website confirmed by the GDPR?A . Where the technology supporting the website is locatedB . Where the website is accessedC . Where the decisions about processing are madeD . Where...

December 29, 2020 1 Comment READ MORE +

A well-known video production company, based in Spain but specializing in documentaries filmed worldwide, has just finished recording several hours of footage featuring senior citizens in the streets of Madrid. Under what condition would the company NOT be required to obtain the consent of everyone whose image they use for their documentary?

A well-known video production company, based in Spain but specializing in documentaries filmed worldwide, has just finished recording several hours of footage featuring senior citizens in the streets of Madrid. Under what condition would the company NOT be required to obtain the consent of everyone whose image they use for...

December 28, 2020 1 Comment READ MORE +

Which EU institution is vested with the competence to propose new data protection legislation on its own initiative?

Which EU institution is vested with the competence to propose new data protection legislation on its own initiative?A . The European CouncilB . The European ParliamentC . The European CommissionD . The Council of the European UnionView AnswerAnswer: D Explanation: Reference: https://www.tandfonline.com/doi/full/10.1080/13600834.2019.1573501

December 28, 2020 1 Comment READ MORE +

Under which of the following conditions does the General Data Protection Regulation NOT apply to the processing of personal data?

Under which of the following conditions does the General Data Protection Regulation NOT apply to the processing of personal data?A . When the personal data is processed only in non-electronic formB . When the personal data is collected and then pseudonymised by the controllerC . When the personal data is...

December 28, 2020 1 Comment READ MORE +

Under what circumstances would the GDPR apply to personal data that exists in physical form, such as information contained in notebooks or hard copy files?

Under what circumstances would the GDPR apply to personal data that exists in physical form, such as information contained in notebooks or hard copy files?A . Only where the personal data is produced as a physical output of specific automated processing activities, such as printing, labelling, or stamping.B . Only...

December 28, 2020 No Comments READ MORE +

Which of the following was listed as a method that would NOT be effective for communicating a breach to data subjects?

WP29’s “Guidelines on Personal data breach notification under Regulation 2016/679’’ provides examples of ways to communicate data breaches transparently. Which of the following was listed as a method that would NOT be effective for communicating a breach to data subjects?A . A postal notificationB . A direct electronic messageC ....

December 28, 2020 No Comments READ MORE +

Which of the following would most likely NOT be covered by the definition of “personal data” under the GDPR?

Which of the following would most likely NOT be covered by the definition of “personal data” under the GDPR?A . The payment card number of a Dutch citizenB . TheD . social security number of an American citizen living in FranceE . The unlinked aggregated data used for statistical purposes...

December 28, 2020 1 Comment READ MORE +