Pass the DSCI DCPP DCPP-01 Questions and answers with CertsForce

Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions
Questions # 1:

A team created by the Indian government has been assigned to create India's privacy law based on Justice AP Shah's recommendations. Is any of the following legislation necessary?

Options:

A.

National privacy principles


B.

An official national data controller registry should be created


C.

Penalties, remedies, and offenses


D.

A right to privacy that is explicitly enshrined in the constitution


Expert Solution
Questions # 2:

As a privacy assessor, what would most likely be the first artifact you would ask for while assessing an organization which claims that it has implemented a privacy program?

Options:

A.

Privacy risk management framework


B.

Records of privacy specific training imparted to the employees handling personal information


C.

Personal information management policy


D.

Records of deployed privacy notices and statements


Expert Solution
Questions # 3:

Which of the following does not fall under the category of Sensitive Personal Data or Information as defined in the Information Technology (Reasonable Security Practices and Procedures and Sensitive Data or Information) Rules, 2011?

Options:

A.

Religious Beliefs


B.

Medical records and history


C.

Sexual orientation


D.

Password


Expert Solution
Questions # 4:

With respect to privacy notice, what are the responsibilities of data controller?

Options:

A.

Providing the notice before or during data collection


B.

Identifying and communication the purposes for which data will be collected, used, and disclosed


C.

Providing notice after the data collection


D.

Providing notice at every instance of data processing


Expert Solution
Questions # 5:

From the following list, identify the technology aspects that are specially designed for upholding the privacy:

i. Data minimization

ii. Intrusion prevention system

iii. Data scrambling

iv. Data loss prevention

v. Data portability

vi. Data obfuscation

vii. Data encryption

viii. Data mirroring

Please select the correct set of aspects from below options:

Options:

A.

Only i., iii., vii. and viii


B.

Only i., ii., iii., vii. and viii


C.

Only i., ii., vi. and vii


D.

Only ii., v., vi., vii. and viii


Expert Solution
Questions # 6:

How soon after becoming aware of the breach the data controller has to notify the supervisory authority under Article 33 of GDPR.

Options:

A.

17 hours


B.

24 hours


C.

36 hours


D.

72 hours


Expert Solution
Questions # 7:

When you're based in the EU and willing to share data outside the EU/EEA, then you can use model contracts. In reference to the above statement, which of the following is true?

Options:

A.

Directive on EU e-commerce mentions it as a requirement


B.

EU Data Protection Directive states that it is a requirement


C.

OECD's Privacy Framework mentions it as a requirement


D.

Neither of the above


Expert Solution
Questions # 8:

Health insurance firm based in the US uses BPM services provided by an Indian company. It was found that one of the employees of the Indian company exported customer data of the insurance company to another US-based insurance company. Under which of the below ground, the company and its executives in India were also subjected to legal action ?

Options:

A.

These actions were not avoided by using data loss prevention tools.


B.

No reasonable security practices were implemented to protect data.


C.

Employees of the company were allowed to view sensitive personal information.


D.

Background checks were not conducted on the individuals.


Expert Solution
Questions # 9:

The Qatar Concerning Privacy and Protection of Personal Data Act, 2016 addresses different types of personal data, including:

Options:

A.

Only manual processing of personal data


B.

Only electronic processing of personal data


C.

The electronic or manual processing of personal information


D.

None of the above


Expert Solution
Questions # 10:

Which of the following are needed for projects like DNA profiling, UIDAI, and statistical collection of individuals ?

Options:

A.

Established a service which guarantees citizens' privacy only online


B.

Protect the privacy of individuals


C.

The need for a comprehensive privacy legislation at national level


D.

None of the above


Expert Solution
Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions