Pass the Isaca Isaca Certification CDPSE Questions and answers with CertsForce

Viewing page 1 out of 8 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which of the following is the MOST effective way to support organizational privacy awareness objectives?

Options:

A.

Funding in-depth training and awareness education for data privacy staff


B.

Implementing an annual training certification process


C.

Including mandatory awareness training as part of performance evaluations


D.

Customizing awareness training by business unit function


Expert Solution
Questions # 2:

Which of the following is the GREATEST obstacle to conducting a privacy impact assessment (PIA)?

Options:

A.

Conducting a PIA requires significant funding and resources.


B.

PIAs need to be performed many times in a year.


C.

The organization lacks knowledge of PIA methodology.


D.

The value proposition of a PIA is not understood by management.


Expert Solution
Questions # 3:

Which of the following is the BEST practice to protect data privacy when disposing removable backup media?

Options:

A.

Data encryption


B.

Data sanitization


C.

Data scrambling


D.

Data masking


Expert Solution
Questions # 4:

Which of the following observations should be of MOST concern to an IT privacy practitioner during an evaluation of an organization’s privacy practices?

Options:

A.

Employee records are maintained on a shared drive


B.

Email is sent out without a data classification label


C.

Third-party service desk staff can view limited customer data


D.

Tokens for personally identifiable data are stored as database fields


Expert Solution
Questions # 5:

Which of the following approaches to incorporating privacy by design principles BEST ensures the privacy of personal information?

Options:

A.

Implementing the principles into the end-to-end data life cycle


B.

Including the principles in reactive data breach plans


C.

Embedding the principles into remediation data procedures


D.

Building the principles into final data product developments


Expert Solution
Questions # 6:

A global organization is planning to implement a customer relationship management (CRM) system to be used in offices based in multiple countries. Which of the following is the MOST important data protection consideration for this project?

Options:

A.

Industry best practice related to information security standards in each relevant jurisdiction


B.

Identity and access management mechanisms to restrict access based on need to know


C.

Encryption algorithms for securing customer personal data at rest and in transit


D.

National data privacy legislative and regulatory requirements in each relevant jurisdiction


Expert Solution
Questions # 7:

Which of the following is the MOST important consideration when using advanced data sanitization methods to ensure privacy data will be unrecoverable?

Options:

A.

Subject matter expertise


B.

Type of media


C.

Regulatory compliance requirements


D.

Location of data


Expert Solution
Questions # 8:

Which of the following information would MOST likely be considered sensitive personal data?

Options:

A.

Mailing address


B.

Bank account login ID


C.

Ethnic origin


D.

Contact phone number


Expert Solution
Questions # 9:

Which of the following is MOST important when developing an organizational data privacy program?

Options:

A.

Obtaining approval from process owners


B.

Profiling current data use


C.

Following an established privacy framework


D.

Performing an inventory of all data


Expert Solution
Questions # 10:

Which of the following is the BEST way to distinguish between a privacy risk and compliance risk?

Options:

A.

Perform a privacy risk audit.


B.

Conduct a privacy risk assessment.


C.

Validate a privacy risk attestation.


D.

Conduct a privacy risk remediation exercise.


Expert Solution
Viewing page 1 out of 8 pages
Viewing questions 1-10 out of questions