Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 591klB651

CIPP-C Certified Information Privacy Professional/ Canada (CIPP/C) Questions and Answers

Questions 4

According to the Voluntary Code of Conduct on the Responsible Development and Management of Advanced Generative AI Systems, signatories commit to doing all of the following EXCEPT?

Options:

A.

Contributing to the development and application of Al standards.

B.

Sharing information and best practices of Al governance.

C.

Supporting public awareness and education on Al.

D.

Adopting low-risk uses of AI.

Buy Now
Questions 5

A new client is opening a Registered Retirement Savings Plan. Their investment advisor asks for their social insurance number (SIN). The advisor must tell the client that because they are opening a tax reporting product, their SIN is mandatory for tax reporting purposes and?

Options:

A.

Optional for identity verification purposes.

B.

Mandatory for identity verification purposes.

C.

Optional for secondary marketing purposes.

D.

Mandatory for secondary marketing purposes.

Buy Now
Questions 6

Which of the following provincial health acts is NOT considered substantially similar to the Personal Information Protection and Electronic Documents Act (PIPEDA)?

Options:

A.

New Brunswick's Personal Health Information Privacy and Access Act (PHIPAA)

B.

Ontario's Personal Health Information Protection Act (PHIPAA)

C.

Nova Scotia's Personal Health Information Act (PHIPAA)

D.

lAberta's Health Information Act (PHIA)

Buy Now
Questions 7

In what situation is the federal Privacy Commissioner authorized to proceed to federal court?

Options:

A.

For a determination on a ruling regarding privacy matters relating to the Charter of Rights and Freedom.

B.

For a determination of whether or not personal information was properly withheld from release.

C.

For a determination on a ruling by an administrative tribunal regarding privacy.

D.

For a determination on a ruling by a provincial Privacy Commissioner.

Buy Now
Questions 8

An Alberta woman finds errors about her personal information while reviewing paperwork at a local real estate firm. According to Canadian Standards Association (CSA) principles, how should the firm respond to these errors?

Options:

A.

File an error report describing the nature of the errors.

B.

Amend any information that the woman finds to be erroneous.

C.

Request that the woman complete a new set of forms with correct information

D.

Provide the woman with the names of any third parties who have had access to her information.

Buy Now
Questions 9

What is the primary motivation for a federal government entity to complete a Privacy Impact Assessment (PIA)?

Options:

A.

Introducing new legislation in the House of Commons

B.

Receiving program approvals from the Treasury Board of Canada.

C.

Obtaining program expertise from the Privacy Commissioner of Canada.

D.

Improving collection methods through its information technology systems.

Buy Now
Questions 10

In Ontario, a patient attends an appointment with a physician and reveals information about some new symptoms that she has been experiencing. Based on this information, the physician diagnoses the patient with a condition and prepares the report detailing the applicable history and diagnosis. The report is added to the patient’s record. The patient later regrets revealing certain facts and doesn’t want anyone else to know about these symptoms or the diagnosis. She acknowledges that the information she provided was correct and does not question the diagnosis.

Which of the following requests would the patient be most successful at pursuing?

Options:

A.

That a correction be made to change the diagnosis based on the patient's wishes.

B.

That the information be restricted from disclosure to other health care providers.

C.

That a copy of the record be kept by the patient for disclosure to physicians.

D.

That details of the diagnosis be deleted from the patient’s health record.

Buy Now
Questions 11

A private sector daycare’s portal for parents stores their children’s photos, allergy information and date of birth. A parent has asked about the portal’s security requirements and in three months still not has received an answer. What is missing from the daycare’s procedures?

Options:

A.

Ensuring transparency.

B.

Responding to the parent's request within 30 days.

C.

Ensuring strong encryption and security measures.

D.

Completing a real risk of significant harm assessment (RROSH).

Buy Now
Questions 12

What is the main reason a country might adopt an "ombudsman" model of privacy oversight?

Options:

A.

It provides a more streamlined process of complaint resolution.

B.

It increases the power of the commissioner to enforce decisions.

C.

It reduces the perception that compliance is a confrontational process.

D.

It provides a more detailed set of guidelines regarding possible violations.

Buy Now
Questions 13

According to the Canadian Standards Association (CSA) Model Code, how long should personal information be retained?

Options:

A.

Personal information should not be retained at all.

B.

Personal information should be retained indefinitely as long as consent has been given.

C.

Personal information should be retained for at least two years after the last administrative use.

D.

Personal information should be retained as long as necessary for the fulfillment of the purpose of the collection.

Buy Now
Questions 14

As response to TJX Winners - Homesense, why is "hashing" preferable to storing a personal identifier such as a driver’s license number?

Options:

A.

It scrambles information but can be unscrambled for later use.

B.

It automatically puts a lifespan on any identification that is stored.

C.

It randomizes all permanent identification within an organized database.

D.

It still provides customer identification, but in a form that would not reveal the real number.

Buy Now
Questions 15

Under PIPEDA, each of the following are considered to be personal information EXCEPT?

Options:

A.

A public official's salary published on a government web site.

B.

A person's telephone number published in a public directory.

C.

A photograph taken in public and published in a newspaper.

D.

Information about a defendant contained in court records.

Buy Now
Questions 16

The process of de-identification where new data elements are substituted for identifying information is?

Options:

A.

Shuffling.

B.

Encryption.

C.

Anonymization.

D.

Pseudonymization.

Buy Now
Questions 17

What is required through the "circle of care" concept under Canadian health information privacy law?

Options:

A.

Health information custodians or trustees be specified only by applicable law or regulation

B.

An individual's consent may be implied unless the individual has refused consent or if the purpose of the disclosure is not to provide health care.

C.

Notification to the individual be made in the event of a data breach of personal health information (PHI) by an organization that is based in Canada

D.

Consent must be expressed or implied when a custodian discloses personal health information (PHI) to another custodian for the purpose of providing health care.

Buy Now
Questions 18

What is critical to consider when an organization responsible for a large number of records wants to outsource the storage of those records?

Options:

A.

Determining if the personal information stored on the records will be used for data matching

B.

Putting into place a contractual agreement between the organization and the records storage company.

C.

Conducting a Privacy Impact Assessment (PIA) prior to establishing a relationship with the storage company.

D.

Establishing that consent gathered from individuals by the organization in order to store their personal information was informed and meaningful.

Buy Now
Questions 19

What must a federal government department do before it implements an electronic service (e-service)?

Options:

A.

Conduct a preliminary PIA before acquiring the service

B.

Complete a PIA in accordance with Treasury Board guidelines.

C.

Publish a privacy statement in newspapers and on the government website.

D.

Determine if the Office of the Privacy Commissioner must be notified of the launch of this new e-service

Buy Now
Questions 20

What must happen before an individual requester can commence a court application relating to the denial of access to personal information under the control of a federal government institution?

Options:

A.

The Privacy Commissioner of Canada must have completed an investigation and issued a report.

B.

The Privacy Commissioner of Canada must have completed an investigation and found in favor of the requester.

C.

The requester must have made a formal Privacy Act request to a government institution for access to personal information.

D.

The requester must have lodged a complaint with the Office of the Privacy Commissioner (OPC) within 60 days of having received a response to a formal Privacy Act request.

Buy Now
Questions 21

Work-product information is generally thought of as information about an individual that?

Options:

A.

Is required by an organization to establish an employment relationship.

B.

Includes internal investigation files and complaints filed about an employee.

C.

Includes intellectual property developed within the scope of an employee's job function.

D.

Is prepared or collected as part of that individual’s responsibilities or activities in connection to their job.

Buy Now
Questions 22

A private organization called Vision 3072 must verify the information they are collecting is up to date in order to avoid misinformed actions or decisions. Which privacy principle is intended to make sure this verification is happening?

Options:

A.

Integrity.

B.

Accuracy.

C.

Accountability.

D.

Limiting purposes.

Buy Now
Exam Code: CIPP-C
Exam Name: Certified Information Privacy Professional/ Canada (CIPP/C)
Last Update: Apr 16, 2024
Questions: 76

PDF + Testing Engine

$86.8  $216.99

Testing Engine

$60.8  $151.99
buy now CIPP-C testing engine

PDF (Q&A)

$56  $139.99
buy now CIPP-C pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 19 Apr 2024