Labour Day Sale - Limited Time 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 575363r9

Welcome To DumpsPedia

DCPP-01 Sample Questions Answers

Questions 4

A multinational company with operations in several parts within EU and outside EU, involves international data transfer of both its employees and customers. In some of its EU branches, which are relatively larger in size, the organization has a works council. Most of the data transferred is personal, and some of the data that the organization collects is sensitive in nature, the processing of some of which is also outsourced to its branches in Asian countries.

Which of the following are not mandatory pre-requisite before transferring sensitive personal data to its Asian branches?

Options:

A.

Notifying the data subject

B.

Conducting risk assessment for the processing involved

C.

Determining adequacy status of the country

D.

Self-certifying to Safe Harbor practices and reporting to Federal Trade Commission

Buy Now
Questions 5

Which of the following legislations/ guidelines do not cover the concept of trans-border data flow?

Options:

A.

OECD

B.

IT (Amendment) Act, 2008

C.

PIPEDA

D.

None of the above

Buy Now
Questions 6

Companies based in EU and willing to transfer data outside the EU/EEA, use model contracts as an instrument. Which of the following statements are true in reference to above statement?

Options:

A.

It is a requirement mentioned in EU Data Protection Directive

B.

It is a requirement mentioned in the OECD Privacy Framework

C.

It is a requirement mentioned in the EU E-Commerce Directive

D.

None of the above

Buy Now
Questions 7

By collecting, storing, and processing personal information on living individuals electronically, Star Link Company could qualify as:

Options:

A.

Data Subject

B.

Data Processor

C.

Data Controller

Buy Now
Questions 8

According to RTI Act, under which conditions can a government department refuse to release information?

Options:

A.

National security adversely affected by such information

B.

This information is detrimental to the stability of the ruling party in government

C.

Detrimental effect on the public image of government agencies

D.

In the absence of a public interest, such information may adversely impact the privacy of its officials

Buy Now
Questions 9

What is not a compulsory pre-requisite before a company with headquarters in the EU transfers sensitive personal data to its Asian subsidiaries?

Options:

A.

Self-certifying to Safe Harbor practices and reporting to Federal Trade Commission

B.

Performing a risk assessment for the processing involved

C.

Data subjects are notified

D.

Assessing the country's adequacy

Buy Now
Questions 10

APPI, the Act for the Protection of Personal Information, applies to:

Options:

A.

Government entities using personal information

B.

Personal Information about an individual that is used by a business

C.

None of the above

Buy Now
Questions 11

A financial organization may share nonpublic information about its customers in accordance with Gramm-Leach-Bliley Act of the US. Which one of the following is the requirement?

Options:

A.

Data sharing does not require consent from the consumers.

B.

As soon as the GLBA privacy notice is disclosed initially and annually

C.

FTC permission is required

D.

Consumers' consent must be obtained first

Buy Now
Questions 12

Privacy enhancing tools aim to allow users to take one or more of the following actions related to their personal data that is sent to, and used by online service providers, merchants or other users:

i. Increase control over their personal data

ii. Choose whether to use services anonymously or not

iii. Obtain informed consent about sharing their personal data

iv. Opt-out of behavioral advertising or any other use of data

Please select correct option from below:

Options:

A.

Only i

B.

Only i and ii

C.

All

D.

All except iii

Buy Now
Questions 13

Which type of data qualify as Sensitive Personal Data or Information under Section 43A of IT (Amendment) Act, 2008?

Options:

A.

Sexual orientation

B.

Political affiliation

C.

Religion and caste

D.

Call Data Records (CDRs)

Buy Now
Questions 14

Company A collects and stores information from people X & Y on behalf of company B. Which of the following statements are true?

Options:

A.

A is the data controller since it collects data directly from X & Y

B.

B is the data controller while A is the sub processor as B has outsourced the data collection and processing to A

C.

B is the data controller that uses A as data processor to collect and process data of data subjects X and Y

D.

Both A & B are data controllers since both need to maintain highest principles of data protection

Buy Now
Questions 15

A government agency collecting biometrics of citizens can deny sharing such information with Law Enforcement Agencies (LEAs) on which of the following basis?

Options:

A.

The purpose of collecting the biometrics is different than what LEAs intent to use it for

B.

The consent of data subjects has not been taken

C.

Government agencies would share the biometrics with LEAs on one condition if LEA properly notify the citizens

D.

None of the above, as government agencies would never deny any LEA for sharing such information for the purpose of mass surveillance

Buy Now
Questions 16

Technological advancement is inevitable and the speed of change is exponential. In such a scenario, which of the following statement is not true for defining the relationship between privacy protection and technology advancement, both at individual and corporate levels?

Options:

A.

Maintaining privacy is difficult with emerging platforms and services

B.

Maintaining privacy is difficult, as exercising complete control over personal information in online environment is an uphill task

C.

Technology advancements and privacy protection are independent concepts that are not related

D.

Maintaining privacy in cyberspace becomes easier with proper use of tools and technologies

Buy Now
Questions 17

If XYZ & Co. collects, stores and processes personal information of living persons, electronically in a structured filing system, then XYZ could be a:

Options:

A.

Data Processor

B.

Data Controller

C.

Data Subject

D.

Either A or B

Buy Now
Questions 18

Which of the following does not fall under the category of Personal Financial Information (PFI)?

Options:

A.

Credit card number with expiry date

B.

Bank account Information

C.

Loan account Information

D.

Income tax return file acknowledgement number

Buy Now
Exam Code: DCPP-01
Exam Name: DSCI certified Privacy Professional (DCPP)
Last Update: Apr 24, 2024
Questions: 122
$64  $159.99
$48  $119.99
$40  $99.99
buy now DCPP-01