Pass the DSCI DCPP DCPP-01 Questions and answers with CertsForce

Viewing page 3 out of 4 pages
Viewing questions 21-30 out of questions
Questions # 21:

A multinational company with operations in several parts within EU and outside EU, involves international data transfer of both its employees and customers. In some of its EU branches, which are relatively larger in size, the organization has a works council. Most of the data transferred is personal, and some of the data that the organization collects is sensitive in nature, the processing of some of which is also outsourced to its branches in Asian countries.

For exporting EU branch employees’ data to Asian Countries for processing, which of the following instruments could be used for legal data transfer?

Options:

A.

Customized contracts mandating ISO 27001 certification by the data processor


B.

Standard Contractual Clauses


C.

Binding Corporate Rules


D.

Safe Harbor


Expert Solution
Questions # 22:

Indian constitution does not expressly provide for the “right to privacy” to its citizens. However, there were various judicial pronouncements of the apex court which finally established the “right to privacy” as a fundamental right subsumed under Article 21 of the constitution of India. Article 21 inter alia provides and protects the __________________.

Options:

A.

Right to Life and Personal liberty


B.

Right to Opportunity


C.

Right to Freedom of Speech and Expression


D.

Right to Equality before law


Expert Solution
Questions # 23:

From the below listed options, identify the new privacy principle that is being advocated in proposed EU General Data Protection Regulation?

Options:

A.

Right to be informed prior to sharing of data


B.

Right to modify data


C.

Right to be forgotten


D.

Right to object data collection and processing


Expert Solution
Questions # 24:

A ministry under government of India plans to collect citizens’ information related to their education, medical condition, economic status, caste and religion. As per the privacy requirements mentioned under Sec 43A of IT (Amendment) Act, 2008, the citizens’ ‘Consent’ would be mandatory for which of the following elements before their collection?

Options:

A.

Educational records


B.

Medical condition


C.

Caste and religion


D.

Sec 43A may not be applicable


Expert Solution
Questions # 25:

A country should allow its citizens to access specific information owned by the government in order to bring transparency in the government administration processes. This is the basis for formulation of which of the following rights in India?

Options:

A.

Right to Privacy Act


B.

Right to Information Act


C.

Right to Freedom of Speech and Expression


D.

Right to Social Security


Expert Solution
Questions # 26:

In India, who among the following would be the authorized legal entities to monitor and intercept communication of individuals?

Options:

A.

“Intermediaries” as defined under the IT (Amendment) Act, 2008


B.

Telecom Service Providers


C.

Intelligence and Law Enforcement Agencies


D.

Directorate of Revenue Intelligence (DRI)


Expert Solution
Questions # 27:

Which of the following laid foundation for the development of OECD privacy principles for the promotion of free international trade and trans border data flows?

Options:

A.

Fair information Privacy Practices of US, 1974


B.

EU Data Protection Directive


C.

Safe Harbor Framework


D.

WTO’s Free Trade Agreement


Expert Solution
Questions # 28:

Which one of the following is considered as the first step of evolution in the formation of today’s concept of privacy?

Options:

A.

Fundamental civil liberty


B.

Universal declaration of human rights


C.

Right to be left alone


D.

Binding corporate rules


Expert Solution
Questions # 29:

Company A collects and stores information from people X & Y on behalf of company B. Which of the following statements are true?

Options:

A.

A is the data controller since it collects data directly from X & Y


B.

B is the data controller while A is the sub processor as B has outsourced the data collection and processing to A


C.

B is the data controller that uses A as data processor to collect and process data of data subjects X and Y


D.

Both A & B are data controllers since both need to maintain highest principles of data protection


Expert Solution
Questions # 30:

What does PHI stand for, as per HIPAA/ HITECH?

Options:

A.

Personal heuristic information


B.

Public health information


C.

Protected health information


D.

Personal health information


Expert Solution
Viewing page 3 out of 4 pages
Viewing questions 21-30 out of questions