ISACA CDPSE Exam Practice Questions (P. 4)
- Full Access (374 questions)
- One Year of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #31
Which of the following scenarios poses the GREATEST risk to an organization from a privacy perspective?
- AThe organization lacks a hardware disposal policy.
- BEmails are not consistently encrypted when sent internally.
- CPrivacy training is carried out by a service provider.
- DThe organization’s privacy policy has not been reviewed in over a year.
Correct Answer:
D
D
send
light_mode
delete
Question #32
Within a business continuity plan (BCP), which of the following is the MOST important consideration to ensure the ability to restore availability and access to personal data in the event of a data privacy incident?
- AOffline backup availability
- BRecovery time objective (RTO)
- CRecovery point objective (RPO)Most Voted
- DOnline backup frequency
send
light_mode
delete
Question #33
In which of the following should the data record retention period be defined and established?
- AData record model
- BData recovery procedures
- CData quality standard
- DData management plan
Correct Answer:
D
D
send
light_mode
delete
Question #34
When tokenizing credit card data, what security practice should be employed with the original data before it is stored in a data lake?
send
light_mode
delete
Question #35
Which key stakeholder within an organization should be responsible for approving the outcomes of a privacy impact assessment (PIA)?
send
light_mode
delete
Question #36
Which of the following is the best reason for a health organization to use desktop virtualization to implement stronger access control to systems containing patient records?
- ALimited functions and capabilities of a secured operating environment
- BMonitored network activities for unauthorized use
- CImproved data integrity and reduced effort for privacy audits
- DUnlimited functionalities and highly secured applications
Correct Answer:
B
B
send
light_mode
delete
Question #37
What is the BEST way for an organization to maintain the effectiveness of its privacy breach incident response plan?
- ARequire security management to validate data privacy security practices.
- BInvolve the privacy office in an organizational review of the incident response plan.
- CHire a third party to perform a review of data privacy processes.
- DConduct annual data privacy tabletop exercises.
Correct Answer:
B
B
send
light_mode
delete
Question #38
Which of the following is MOST important when developing an organizational data privacy program?
- AObtaining approval from process owners
- BProfiling current data use
- CFollowing an established privacy framework
- DPerforming an inventory of all data
Correct Answer:
B
B
send
light_mode
delete
Question #39
Which of the following should be considered personal information?
send
light_mode
delete
Question #40
Which of the following should an IT privacy practitioner do FIRST following a decision to expand remote working capability to all employees due to a global pandemic?
- AEvaluate the impact resulting from this change.
- BRevisit the current remote working policies.
- CImplement a virtual private network (VPN) tool.
- DEnforce multi-factor authentication for remote access.
Correct Answer:
B
B
send
light_mode
delete
All Pages
