What is the main task of the European Data Protection Board?
What is the main task of the European Data Protection Board?A . To assess adequacy of data protection in third countriesB . To ensure consistent application of the GDPR.C . To proactively prevent disputes between national supervisory authorities.D . To publish guidelines tor data subjects on how to property enforce...
Which of the following regulates the use of electronic communications services within the European Union?
Which of the following regulates the use of electronic communications services within the European Union?A . Regulator (EU) 2015/2120 of the European Parliament and of the Council of 25 November 2015.B . Regulation (EU) 2017/1953 of the European Parliament and of the Council of 25 October 2017.C . Directive 2002/58'EC...
What would be the most realistic way that Company B could have fulfilled this requirement?
SCENARIO Please use the following to answer the next question: Due to rapidly expanding workforce, Company A has decided to outsource its payroll function to Company B. Company B is an established payroll service provider with a sizable client base and a solid reputation in the industry. Company B’s payroll...
Which of the following is NOT recognized as being a common characteristic of cloud-computing services?
Which of the following is NOT recognized as being a common characteristic of cloud-computing services?A . The service’s infrastructure is shared among the supplier’s customers and can be located in a number of countries.B . The supplier determines the location, security measures, and service standards applicable to the processing.C ....
Which of the following would NOT be relevant when determining if a processing activity would be considered profiling?
Which of the following would NOT be relevant when determining if a processing activity would be considered profiling?A . If the processing is to be performed by a third-party vendorB . If the processing involves data that is considered personal dataC . If the processing of the data is done...
In light of the requirements of Article 32 of the GDPR (related to the Security of Processing), which practice should the company institute?
SCENARIO Please use the following to answer the next question: You have just been hired by a toy manufacturer based in Hong Kong. The company sells a broad range of dolls, action figures and plush toys that can be found internationally in a wide variety of retail stores. Although the...
The Customer for Life plan may conflict with which GDPR provision?
SCENARIO Please use the following to answer the next question: Joe is the new privacy manager for Who-R-U, a Canadian business that provides DNA analysis. The company is headquartered in Montreal, and all of its employees are located there. The company offers its services to Canadians only: Its website is...
Which of the following Convention 108+ principles, as amended in 2018, is NOT consistent with a principle found in the GDPR?
Which of the following Convention 108+ principles, as amended in 2018, is NOT consistent with a principle found in the GDPR? A. The obligation of companies to declare data breaches. B. The requirement to demonstrate compliance to a supervisory authority. C. The necessity of the bulk collection of personal data...
Which of the following is the weakest lawful basis for processing employee personal data?
Which of the following is the weakest lawful basis for processing employee personal data?A . Processing based on fulfilling an employment contract.B . Processing based on employee consent.C . Processing based on legitimate interests.D . Processing based on legal obligation.View AnswerAnswer: B Explanation: Reference: https://www.itgovernance.co.uk/blog/gdpr-lawful-bases-for-processing-with-examples
What should the employer most likely do in regard to the worker’s personal data?
A worker in a European Union (EU) member state has ceased his employment with a company. What should the employer most likely do in regard to the worker’s personal data?A . Destroy sensitive information and store the rest per applicable data protection rules.B . Store all of the data in...