wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

Operation Reliability

Total questions: 10

Worksheet time: 5mins

Name
Class
Date
1.

Which of the following entity in Singapore is not subjected to Singapore’s personal data protection act?

a)

Central Provident Fund Board

b)

Singapore Airlines Limited

c)

Aviva Ltd

d)

NTUC Income Insurance Co-Operative Limited

2.

Under Singapore’s Personal Data Protection Act, which of the following is not the responsibility of the Data Protection Officer?

a)

Alert potential risk with regards to the personal data handled internally

b)

Foster personal data protection culture

c)

Disclose all sensitive personal data in the company to PDPC

d)

Ensure PDPA compliance through policies and processes

3.

What is the maximum financial penalty in breaching Singapore’s Personal Data Protection Act for a company with a S$10million annual turnover?

a)

S$1 million

b)

S$10,000

c)

S$500

d)

There is no financial penalty

4.

What is not personal data in the context of Singapore’s Personal Data Protection Act?

a)

Business phone number

b)

NRIC number

c)

Date of birth

d)

Gender

5.

Which of the following is true?

a)

We should collect personal data just in case we need it

b)

We don’t have to train the users on data protection as long as we have set the policies

c)

Outsourcing the DPO role is permitted under PDPA

d)

A company operating in Singapore with personal sensitive data of EU citizens is not subjected to GDPR

6.

What is not an important factor to consider in any cybersecurity protection framework?

a)

Threats

b)

Vulnerabilities

c)

Mitigation of the cybersecurity risk

d)

Spending whatever it takes to protect the business

7.

In cybersecurity risk assessment, what is not a standard action to take after the identification of the risk?

a)

Mitigate the risk

b)

Avoid the risk

c)

Transfer the risk

d)

Publicize the risk

8.

All default configurations of a freshly installed operating system will be sufficiently good enough to protect the user data that the server will be holding. True or false?

a)

True

b)

False

9.

Which of the following is true?

a)

We should not consider encryption of emails as an option in data protection as this will increase the latency

b)

End-point security is not necessary as this takes up storage space on the user device

c)

Anti-virus signature list need not be updated for up to 2 years

d)

Security awareness training is one of the most effective way to equip employees with knowledge in data assets protection

10.

Vendor is always trying to sell cybersecurity solutions claiming that their product can prevent all forms of zero-day attack from happening to my organization. Should I believe that?

a)

Yes, this is the most basic feature

b)

Yes, these attacks are always minor and consequences negligible

c)

No, these are newly discovered flaws and protection might not be available

d)

No, I should see their price first