ISACA CDPSE Exam Practice Questions (P. 1)
- Full Access (285 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
What should be the PRIMARY consideration of a multinational organization deploying a user and entity behavior analytics (UEBA) tool to centralize the monitoring of anomalous employee behavior?
- ACross-border data transferMost Voted
- BSupport staff availability and skill set
- CUser notification
- DGlobal public interest
Correct Answer:
B
B
send
light_mode
delete
Question #2
Which of the following should be the FIRST consideration when conducting a privacy impact assessment (PIA)?
- AThe applicable privacy legislationMost Voted
- BThe quantity of information within the scope of the assessment
- CThe systems in which privacy-related data is stored
- DThe organizational security risk profile
Correct Answer:
C
C
send
light_mode
delete
Question #3
Which of the following BEST represents privacy threat modeling methodology?
- AMitigating inherent risks and threats associated with privacy control weaknesses
- BSystematically eliciting and mitigating privacy threats in a software architecture
- CReliably estimating a threat actor’s ability to exploit privacy vulnerabilities
- DReplicating privacy scenarios that reflect representative software usage
Correct Answer:
A
A
send
light_mode
delete
Question #4
An organization is creating a personal data processing register to document actions taken with personal data. Which of the following categories should document controls relating to periods of retention for personal data?
send
light_mode
delete
Question #5
Data collected by a third-party vendor and provided back to the organization may not be protected according to the organization’s privacy notice. Which of the following is the BEST way to address this concern?
- AReview the privacy policy.
- BObtain independent assurance of current practices.
- CRe-assess the information security requirements.
- DValidate contract compliance.
Correct Answer:
D
D
send
light_mode
delete
All Pages