Privacy in the Modern Era
Quiz
•
Computers
•
Professional Development
•
Practice Problem
•
Hard
Bob Riley
FREE Resource
Enhance your content in a minute
20 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Which of the following types of information should be protected by a privacy program?
Customer records
Product plans
Trade secrets
All of the above
Answer explanation
All of these records are important to a business and may be considered sensitive. However, this does not mean that they would fall into the scope of a privacy program. Privacy programs are specifically intended to protect personal information and, of the information presented here, only customer records fall into that category. A cybersecurity program would be interested in protecting all these elements of information.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Barry is consulting with his organization's cybersecurity team on the development of their cybersecurity program. Which one of the following would not be a typical objective of such a program?
Privacy
Confidentiality
Availability
Integrity
Answer explanation
The three main goals of a cybersecurity program are confidentiality, integrity, and availability. Although privacy and security objectives are often linked and interdependent, privacy is not one of the three cybersecurity objectives.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Howard is assisting his firm in developing a new privacy program and wants to incorporate a privacy risk assessment process into the program. If Howard wishes to comply with industry best practices, how often should the firm conduct these risk assessments?
Monthly
Semiannually
Annually
Biannually
Answer explanation
Industry best practice calls for an annual privacy risk assessment designed to analyze the organization's current practices in light of the evolving privacy environment.
Industry best practice calls for an annual privacy risk assessment designed to analyze the organization's current practices in light of the evolving privacy environment.
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Of the following fields, which fits into the "special categories of personal data" under GDPR?
Banking records
Union membership records
Educational records
Employment records
Answer explanation
The special categories of information under GDPR include information about racial and ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic information, biometric information, health data, and data about a person's sex life or sexual orientation. Other categories of information may be sensitive but do not fit into this definition.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Katie is assessing her organization's privacy practices and determines that the organization previously collected customer addresses for the purpose of shipping goods and is now using those addresses to mail promotional materials. If this possibility was not previously disclosed, what privacy principle is the organization most likely violating?
Quality
Management
Notice
Security
Answer explanation
One of the provisions of the notice principle is that organizations should provide notice to data subjects before they use information for a purpose other than those that were previously disclosed.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Kara is the chief privacy officer of an organization that maintains a database of customer information for marketing purposes. What term best describes the role of Kara's organization with respect to that database?
Data subject
Data custodian
Data controller
Data processor
Answer explanation
Kara's organization is collecting and processing this information for its own business needs. Therefore, it is best described as the data controller.
Kara's organization is collecting and processing this information for its own business needs. Therefore, it is best described as the data controller.
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Richard would like to use an industry standard reference for designing his organization's privacy controls. Which one of the following ISO standards is best suited for this purpose?
ISO 27001
ISO 27002
ISO 27701
ISO 27702
Answer explanation
ISO 27701 covers best practices for implementing privacy controls. ISO 27001 and ISO 27002 relate to an organization's information security program. ISO 27702 does not yet exist.
Create a free account and access millions of resources
Create resources
Host any resource
Get auto-graded reports

Continue with Google

Continue with Email

Continue with Classlink

Continue with Clever
or continue with

Microsoft
%20(1).png)
Apple
Others
Already have an account?
Similar Resources on Wayground
16 questions
Photoshop tools
Quiz
•
6th Grade - Professio...
16 questions
DECI - Week 13 - round
Quiz
•
Professional Development
20 questions
js DOM
Quiz
•
12th Grade - Professi...
15 questions
Javascript basics
Quiz
•
Professional Development
16 questions
Keyboard Types
Quiz
•
Professional Development
17 questions
MOC 20744C-Securing Windows Server 2016 - Part 2
Quiz
•
Professional Development
15 questions
4.6.4 Logic Gates
Quiz
•
10th Grade - Professi...
20 questions
Investigasi Forensics Siber
Quiz
•
Professional Development
Popular Resources on Wayground
5 questions
This is not a...winter edition (Drawing game)
Quiz
•
1st - 5th Grade
15 questions
4:3 Model Multiplication of Decimals by Whole Numbers
Quiz
•
5th Grade
25 questions
Multiplication Facts
Quiz
•
5th Grade
10 questions
The Best Christmas Pageant Ever Chapters 1 & 2
Quiz
•
4th Grade
12 questions
Unit 4 Review Day
Quiz
•
3rd Grade
10 questions
Identify Iconic Christmas Movie Scenes
Interactive video
•
6th - 10th Grade
20 questions
Christmas Trivia
Quiz
•
6th - 8th Grade
18 questions
Kids Christmas Trivia
Quiz
•
KG - 5th Grade
