Which of the following types of information should be protected by a privacy program?
Privacy in the Modern Era

Quiz
•
Computers
•
Professional Development
•
Hard
Bob Riley
FREE Resource
20 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Customer records
Product plans
Trade secrets
All of the above
Answer explanation
All of these records are important to a business and may be considered sensitive. However, this does not mean that they would fall into the scope of a privacy program. Privacy programs are specifically intended to protect personal information and, of the information presented here, only customer records fall into that category. A cybersecurity program would be interested in protecting all these elements of information.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Barry is consulting with his organization's cybersecurity team on the development of their cybersecurity program. Which one of the following would not be a typical objective of such a program?
Privacy
Confidentiality
Availability
Integrity
Answer explanation
The three main goals of a cybersecurity program are confidentiality, integrity, and availability. Although privacy and security objectives are often linked and interdependent, privacy is not one of the three cybersecurity objectives.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Howard is assisting his firm in developing a new privacy program and wants to incorporate a privacy risk assessment process into the program. If Howard wishes to comply with industry best practices, how often should the firm conduct these risk assessments?
Monthly
Semiannually
Annually
Biannually
Answer explanation
Industry best practice calls for an annual privacy risk assessment designed to analyze the organization's current practices in light of the evolving privacy environment.
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Of the following fields, which fits into the "special categories of personal data" under GDPR?
Banking records
Union membership records
Educational records
Employment records
Answer explanation
The special categories of information under GDPR include information about racial and ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic information, biometric information, health data, and data about a person's sex life or sexual orientation. Other categories of information may be sensitive but do not fit into this definition.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Katie is assessing her organization's privacy practices and determines that the organization previously collected customer addresses for the purpose of shipping goods and is now using those addresses to mail promotional materials. If this possibility was not previously disclosed, what privacy principle is the organization most likely violating?
Quality
Management
Notice
Security
Answer explanation
One of the provisions of the notice principle is that organizations should provide notice to data subjects before they use information for a purpose other than those that were previously disclosed.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Kara is the chief privacy officer of an organization that maintains a database of customer information for marketing purposes. What term best describes the role of Kara's organization with respect to that database?
Data subject
Data custodian
Data controller
Data processor
Answer explanation
Kara's organization is collecting and processing this information for its own business needs. Therefore, it is best described as the data controller.
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Richard would like to use an industry standard reference for designing his organization's privacy controls. Which one of the following ISO standards is best suited for this purpose?
ISO 27001
ISO 27002
ISO 27701
ISO 27702
Answer explanation
ISO 27701 covers best practices for implementing privacy controls. ISO 27001 and ISO 27002 relate to an organization's information security program. ISO 27702 does not yet exist.
Create a free account and access millions of resources
Similar Resources on Quizizz
15 questions
SEC+ Ch.11 Review Test

Quiz
•
Professional Development
15 questions
Social Media Basics for Educators

Quiz
•
9th Grade - Professio...
20 questions
CySa+ PT 4: 2/3

Quiz
•
9th Grade - Professio...
15 questions
Sec+ CH.1 Review Test

Quiz
•
Professional Development
15 questions
Sec+ CH.3 Review Test

Quiz
•
Professional Development
15 questions
Security+ Study Guide-02 Understanding Identity & Access Mgnt

Quiz
•
Professional Development
15 questions
Operating Systems

Quiz
•
Professional Development
20 questions
A+ - 10A - Configure Windows User Settings

Quiz
•
Professional Development
Popular Resources on Quizizz
15 questions
Character Analysis

Quiz
•
4th Grade
17 questions
Chapter 12 - Doing the Right Thing

Quiz
•
9th - 12th Grade
10 questions
American Flag

Quiz
•
1st - 2nd Grade
20 questions
Reading Comprehension

Quiz
•
5th Grade
30 questions
Linear Inequalities

Quiz
•
9th - 12th Grade
20 questions
Types of Credit

Quiz
•
9th - 12th Grade
18 questions
Full S.T.E.A.M. Ahead Summer Academy Pre-Test 24-25

Quiz
•
5th Grade
14 questions
Misplaced and Dangling Modifiers

Quiz
•
6th - 8th Grade