Labour Day - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

PDPF Privacy and Data Protection Foundation Questions and Answers

Questions 4

According to the GDPR, what is a task of a supervisory authority?

Options:

A.

Investigate security breaches of corporate information

B.

Implement technical and organizational measures to ensure compliance

C.

Monitor and enforce the application of the GDPR

Buy Now
Questions 5

What is the purpose of Data Lifecycle Management (DLM)?

Options:

A.

Ensure data integrity and its periodic update

B.

Ensure data confidentiality and availability throughout its useful life.

C.

Ensure that the processing of personal data, throughout its useful life complies with the GDPR

D.

Ensure data confidentiality throughout its useful life, from collection to deletion.

Buy Now
Questions 6

The Control Authority may impose fines on organizations that are not meeting the mandatory requirements of the General Data Protection Regulation (GDPR).

Options:

A.

False

B.

True

Buy Now
Questions 7

Which of the parts below can implement data protection by design (from conception)?

Options:

A.

The data subject.

B.

The Data Protection Officer (DPO).

C.

The processor.

D.

The supervisory authority.

Buy Now
Questions 8

The illegal collection, storage, modification, disclosure or dissemination of personal data is an offense under European law.

What kind of offense is this?

Options:

A.

An offense related to content

B.

An offense to intellectual property

C.

An economic offense

D.

An offense to privacy

Buy Now
Questions 9

When personal data are processed, who is ultimately responsible for demonstrating compliance with the GDPR?

Options:

A.

Data protection officer (DPO)

B.

Supervisory authority

C.

Processor

D.

Controller

Buy Now
Questions 10

When is a Data Protection Impact Assessment (DPIA) under the General Data Protection Regulation (GDPR) mandatory?

Options:

A.

Application of new technologies that may imply a high risk to the rights and freedoms of data subjects.

B.

There is no security policy and information security risk analysis.

C.

In all types of personal data processing.

Buy Now
Questions 11

An Independent Supervisory Authority has several responsibilities. Which of the following is one of these?

Options:

A.

Supervise the application of the General Data Protection Regulation (GDPR).

B.

Assist in the elaboration and adaptation of the specific data protection laws of each country.

C.

Conduct a Data Protection Impact Assessment (DPIA).

D.

Assist in the planning of a Personal Data Protection Management System when requested by the Controller.

Buy Now
Questions 12

A person buys a product at a store located in the European Economic Area (EEA). At the time of purchase, you are asked to fill out a registration form and he informs his personal email.

As is usual in many stores, in the next few days this person will start receiving several marketing emails. He considers the frequency of these emails to be very high. Demanding his rights, he asks the store to delete all his personal data.

What the store must do according to the General Data Protection Regulation (GDPR)?

Options:

A.

The owner does not have this right, since he bought a product in the store, he has the right to send emails with new promotions.

B.

The store has 30 days from the date of receipt of the customer’s request to delete all data at no cost to the customer.

C.

The store must delete customer data from its advertising list. Purchase data cannot be deleted, as financial data has to be kept longer.

Buy Now
Questions 13

The GDPR does not define privacy as a term but uses the concept implicitly throughout the text. What is a correct definition of privacy as implicitly used throughout the GDPR?

Options:

A.

The right to respect for one’s private and family life, home and personal correspondence

B.

The right not to be disturbed by uninvited people, nor being followed, spied on or monitored

C.

The fundamental right to protection of personal data, regardless of how it was obtained

D.

The right to freedom of opinion and expression and to seeking, receiving and imparting information

Buy Now
Questions 14

We know that when browsing the internet there is a lot of personal data that is collected. One mechanism for collecting this data is cookies.

How do marketers use this collected personal data?

Options:

A.

Collecting logs from web servers and running campaigns promoting products on social media.

B.

Collecting the logs from the web servers, they analyze which products are most visited and sold, promoting marketing campaigns for these products.

C.

They create behavioral profiles, applying tags to web page visitors. These profiles can be marketed and used in targeted marketing campaigns.

Buy Now
Questions 15

What is the main difference between Directive 95/46 / EC and the General Data Protection Regulation (GDPR)?

Options:

A.

The GDPR offers guidance for EU Member States and can create their own laws to comply with the regulation. Directive 95/46 / EC has the force of law and all EU Member States must follow it without changing.

B.

Directive 95/46 / EC offers guidance for EU Member States and can create their own laws to suit the directive. The GDPR has the force of law and all EU Member States must follow it without changing it.

Buy Now
Questions 16

Which option below defines correctly data protection by design (from conception)?

Options:

A.

It’s a methodology of data protection according to its form

B.

It’s a concept that demonstrates the need to protect data since the beginning.

C.

It’s a methodology about how the data should be collected

D.

Only data that is required for processing should be processed

Buy Now
Questions 17

Personal data as defined in the GDPR can be divided into several types. One of these types is described: Data that directly or indirectly reveal someone’s racial or ethnic background, political, philosophical, religious views, union affiliation and data related to health or sex life and sexual orientation. What type of personal data is this?

Options:

A.

Direct personal data

B.

Indirect personal data

C.

Pseudonymized data

D.

Special category personal data

Buy Now
Questions 18

What is the most important difference between the 95/46/EC and the GDPR?

Options:

A.

95/46/EC applies as law in all EEA member states while the GDPR is a guidance.

B.

95/46/EC applies to processing of data on EEA residents worldwide and the GDPR does not.

C.

The GDPR applies as law in all EEA member states while 95/46/EC is a guidance.

D.

The GDPR applies to persons and organizations which process personal data within EEA member states.

The scope of 95/46/EC is more restricted in this aspect.

Buy Now
Questions 19

The GDPR states that records of processing activities must be kept by the controller. To whom must the controller make these records available, if requested?

Options:

A.

The data processor

B.

The Data Protection Officer

C.

The European Commission

D.

The supervisory authority

Buy Now
Questions 20

What is the definition of privacy related to the General Data protection Regulation (GDPR)?

Options:

A.

A situation in which one is not observed or distributed by the government or uninvited people.

B.

The right to respect for a person’s private and family life, his home and his correspondence.

C.

The fundamental right to respect a person’s physical and mental integrity.

D.

The right to be protected against unsolicited intrusion into a computer or network and the processing of personal data by third parties.

Buy Now
Questions 21

One of the objectives of a data protection impact assessment (DPIA) is to strengthen the confidence of customers or citizens in the way personal data is processed and privacy is respected. How can a DPIA strengthen the confidence?

Options:

A.

The organization proves that it takes privacy seriously and aims for compliance with the GDPR.

B.

The organization minimizes the risk of costly adjustments in processes or the redesign of systems in a later stage.

C.

The organization prevents non-compliance with the GDPR and minimizes the risk of fines

Buy Now
Questions 22

Which of the following types of transfers of personal data outside the European Economic Area (EEA) is allowed?

Options:

A.

Transfer between country governments.

B.

Transfers subject to the law of the countries involved.

C.

Transfers conducted through Standard Contractual Clauses.

D.

Transfers conducted under Compulsory Corporate Rules.

Buy Now
Exam Code: PDPF
Exam Name: Privacy and Data Protection Foundation
Last Update: Apr 23, 2024
Questions: 149

PDF + Testing Engine

$56  $159.99

Testing Engine

$42  $119.99
buy now PDPF testing engine

PDF (Q&A)

$35  $99.99
buy now PDPF pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 26 Apr 2024