Labour Day Sale - Limited Time 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 575363r9

Welcome To DumpsPedia

CIPP-C Sample Questions Answers

Questions 4

Which action will help a business prove compliance under Canada’s Anti-Spam Legislation (CASL)?

Options:

A.

Demonstrating the dissolution of a personal relationship before communication was sent.

B.

Keeping records of express and implied consent of commercial electronic messages.

C.

Posting a list of CASL guidelines on a company's website for customers to read.

D.

Providing an opt-out mechanism.

Buy Now
Questions 5

How would an individual determine whether their personal information was used by the federal government for data matching?

Options:

A.

By submitting written requests to the third party conducting data matching for the government

B.

By noting the description of the Personal Information Banks available through Info Source.

C.

By proposing a Privacy Impact Assessment (PIA) within the specific government body.

D.

By reviewing the Privacy Commissioner's annual report.

Buy Now
Questions 6

As response to TJX Winners - Homesense, why is "hashing" preferable to storing a personal identifier such as a driver’s license number?

Options:

A.

It scrambles information but can be unscrambled for later use.

B.

It automatically puts a lifespan on any identification that is stored.

C.

It randomizes all permanent identification within an organized database.

D.

It still provides customer identification, but in a form that would not reveal the real number.

Buy Now
Questions 7

Under the Personal Information Protection and Electronic Documents Act (PIPEDA), an organization must maintain a record of every breach of security safeguards involving personal information for a minimum of?

Options:

A.

3 months.

B.

12 months.

C.

24 months.

D.

36 months

Buy Now
Questions 8

Which of the following existing frameworks is least effective in addressing emerging AI issues while specific AI legislation is being decided?

Options:

A.

The Canada Consumer Product Safety Act.

B.

The Motor Vehicle Safety Act.

C.

The Copyright Act.

D.

The Criminal Code.

Buy Now
Questions 9

Of the key principles in the Personal Information Protection and Electronic Documents Act (PIPEDA), which principle in particular contributes to the increase in privacy policies in recent years?

Options:

A.

Limiting Use, Disclosure, and Retention.

B.

Individual Access.

C.

Openness.

D.

Accuracy

Buy Now
Questions 10

Which question is NOT part of the Office of the Privacy Commissioner of Canada’s (OPC’s) four-point test for establishing whether providing access to genetic testing results goes beyond what is necessary or reasonable?

Options:

A.

Are there less privacy-invasive alternatives?

B.

Are the collection and the use proportionate to the benefits gained?

C.

Are the validity and accuracy of individual test results guaranteed to be accurate?

D.

Is the personal information likely to be effective in achieving a legitimate business purpose?

Buy Now
Questions 11

What must a federal government department do before it implements an electronic service (e-service)?

Options:

A.

Conduct a preliminary PIA before acquiring the service

B.

Complete a PIA in accordance with Treasury Board guidelines.

C.

Publish a privacy statement in newspapers and on the government website.

D.

Determine if the Office of the Privacy Commissioner must be notified of the launch of this new e-service

Buy Now
Questions 12

What is required through the "circle of care" concept under Canadian health information privacy law?

Options:

A.

Health information custodians or trustees be specified only by applicable law or regulation

B.

An individual's consent may be implied unless the individual has refused consent or if the purpose of the disclosure is not to provide health care.

C.

Notification to the individual be made in the event of a data breach of personal health information (PHI) by an organization that is based in Canada

D.

Consent must be expressed or implied when a custodian discloses personal health information (PHI) to another custodian for the purpose of providing health care.

Buy Now
Questions 13

In what situation is the federal Privacy Commissioner authorized to proceed to federal court?

Options:

A.

For a determination on a ruling regarding privacy matters relating to the Charter of Rights and Freedom.

B.

For a determination of whether or not personal information was properly withheld from release.

C.

For a determination on a ruling by an administrative tribunal regarding privacy.

D.

For a determination on a ruling by a provincial Privacy Commissioner.

Buy Now
Questions 14

A new client is opening a Registered Retirement Savings Plan. Their investment advisor asks for their social insurance number (SIN). The advisor must tell the client that because they are opening a tax reporting product, their SIN is mandatory for tax reporting purposes and?

Options:

A.

Optional for identity verification purposes.

B.

Mandatory for identity verification purposes.

C.

Optional for secondary marketing purposes.

D.

Mandatory for secondary marketing purposes.

Buy Now
Questions 15

The process of de-identification where new data elements are substituted for identifying information is?

Options:

A.

Shuffling.

B.

Encryption.

C.

Anonymization.

D.

Pseudonymization.

Buy Now
Questions 16

What is a difference between the Personal Information Protection and Electronic Documents Act (PIPEDA) and the Personal Information Privacy Act (PIPA) of both Alberta and British Columbia?

Options:

A.

PIPEDA applies to personal information about individuals employed by government institutions; PIPA applies to personal information about individuals employed by public-sector organizations within the provinces.

B.

The enforcement powers of the federal Privacy Commissioner of Canada under PIPEDA are greater than those of the provincial privacy commissioners under PIPA.

C.

PIPEDA applies to federal undertakings and to inter-provincial organizations engaged in commercial activities; PIPA applies to private organizations.

D.

The person in charge of oversight of PIPEDA is a privacy commissioner; the person in charge of oversight of PIPA is an ombudsman.

Buy Now
Questions 17

Which is NOT a Canadian Standards Association (CSA) Privacy Principle?

Options:

A.

Personal information shall be protected by the same security safeguards regardless of the sensitivity of the information.

B.

The purpose for which personal information is collected shall be identified by the organization at or before the time the information is collected.

C.

The degree to which personal information must be kept accurate and complete is determined by whether its original purpose has been achieved.

D.

Upon request, an individual shall be informed of the existence, use and disclosure of their personal information and shall be given access to that information.

Buy Now
Questions 18

Which case, brought before the Federal Court, helped determine that the Office of the Privacy Commissioner of Canada (OPC) had jurisdiction to investigate complaints about United States companies collecting, using and disclosing the personal information of individuals within Canada?

Options:

A.

TJX Winners - Homesense.

B.

Facebook: 2019.

C.

Blood Tribe.

D.

Abika.com.

Buy Now
Questions 19

Under PIPEDA, each of the following are considered to be personal information EXCEPT?

Options:

A.

A public official's salary published on a government web site.

B.

A person's telephone number published in a public directory.

C.

A photograph taken in public and published in a newspaper.

D.

Information about a defendant contained in court records.

Buy Now
Questions 20

According to the Voluntary Code of Conduct on the Responsible Development and Management of Advanced Generative AI Systems, signatories commit to doing all of the following EXCEPT?

Options:

A.

Contributing to the development and application of Al standards.

B.

Sharing information and best practices of Al governance.

C.

Supporting public awareness and education on Al.

D.

Adopting low-risk uses of AI.

Buy Now
Questions 21

Oversight authorities allow the following types of consent EXCEPT?

Options:

A.

Implied consent at the time of collection.

B.

Verbal consent given to the person collecting the information.

C.

Written consent included with the information that is collected.

D.

General consent covering all activities associated with the personal information.

Buy Now
Questions 22

What is critical to consider when an organization responsible for a large number of records wants to outsource the storage of those records?

Options:

A.

Determining if the personal information stored on the records will be used for data matching

B.

Putting into place a contractual agreement between the organization and the records storage company.

C.

Conducting a Privacy Impact Assessment (PIA) prior to establishing a relationship with the storage company.

D.

Establishing that consent gathered from individuals by the organization in order to store their personal information was informed and meaningful.

Buy Now
Exam Code: CIPP-C
Exam Name: Certified Information Privacy Professional/ Canada (CIPP/C)
Last Update: Apr 25, 2024
Questions: 76
$64  $159.99
$48  $119.99
$40  $99.99
buy now CIPP-C