Exam Code : DCPP-01
Exam Name : DSCI certified Privacy Professional
Vendor Name :
"DSCI"
DCPP-01 Dumps DCPP-01 Braindumps
DCPP-01 Real Questions DCPP-01 Practice Test DCPP-01 Actual Questions
killexams.com
DSCI certified Privacy Professional
https://killexams.com/pass4sure/exam-detail/DCPP-01
Question: 85
After the rules were notified under section 43A of the IT (Amendment) Act, 2008, a clarification was issued by the government which exempted the service providers, which get access to/processes Sensitive Personal Data or information (SPDI) under contractual agreement with a legal entity located within or outside India.
Which privacy principle provisions notified under Sec 43A were exempted for the service providers?
Answer: B
Question: 86
Select the element(s) of APEC cross border privacy rules system from the following list: i. self-assessment ii. compliance review iii. recognition/acceptance by APEC members iv. dispute resolution and enforcement Please select correct option:
Answer: C
Question: 87
Challenging Compliance’ as a privacy principle is covered in which of the following data protection/ privacy act?
Answer: C
Question: 88
Which of the following is not required by an organization in US, resorting to EU-US Safe Harbor provisions, to transfer personal information from EU member nation to US?
Answer: B
Question: 89
Please select the incorrect statement in context of "Online Privacy":
Answer: C
Question: 90
Complete the sentence:
The Gramm-Leach-Bliley Act (GLBA) of US regulates the privacy practices adopted by financial institutions, requiring them to provide adequate security of the customer records. It lays various obligations on the financial institutions but allows such financial institutions to share the non-public information of customers (after properly notifying their consumers in a manner mentioned in the Act) with
Answer: A
Question: 91
With respect to ‘Data Minimization’ privacy principle, please select the correct statements from the following:
Answer: A
Question: 92
Which of the following privacy principle deals with informed consent of the data subject before sharing the personal information (of the data subject) to third parties for processing?
Answer: C
Question: 93
For negligence in implementing and maintaining the reasonable security practices and procedures for protecting Sensitive Personal Data or Information (SPDI) as mentioned in Section 43A and associated rules under IT (Amendment) Act, 2008, a corporate entity may be liable to pay compensation of up to
Answer: D
Reference: https://shodhganga.inflibnet.ac.in/bitstream/10603/164562/3/chapter%20ii.pdf
Question: 94
With reference to APEC privacy framework, when personal information is to be transferred to another person or organization, whether domestically or internationally, "the should obtain the consent of the individual and exercise due diligence and take reasonable steps to ensure that the recipient person or organization will protect the information consistently with APEC information privacy principles".
Answer: B
Reference: https://iapp.org/news/a/gdpr-matchup-the-apec-privacy-framework-and-cross-border-privacy-rules/
Question: 95
From the below listed options, identify the new privacy principle that is being advocated in proposed EU General Data Protection Regulation?
Answer: C
Question: 96
Which of the following statements are true about the privacy statement of an organization?
Answer: A
Reference: https://en.wikipedia.org/wiki/Privacy_policy
Question: 97
A multinational company with operations in several parts within EU and outside EU, involves international data transfer of both its employees and customers. In some of its EU branches, which are relatively larger in size, the organization has a works council. Most of the data transferred is personal, and some of the data that the organization collects is sensitive in nature, the processing of some of which is also outsourced to its branches in Asian countries.
Which of the following are not mandatory pre-requisite before transferring sensitive personal data to its Asian branches?
Answer: D
Question: 98
A multinational company with operations in several parts within EU and outside EU, involves international data transfer of both its employees and customers. In some of its EU branches, which are relatively larger in size, the organization has a works council. Most of the data transferred is personal, and some of the data that the organization collects is sensitive in nature, the processing of some of which is also outsourced to its branches in Asian countries.
For exporting EU branch employees’ data to Asian Countries for processing, which of the following instruments could be used for legal data transfer?
Answer: D
Question: 99
A multinational company with operations in several parts within EU and outside EU, involves international data transfer of both its employees and customers. In some of its EU branches, which are relatively larger in size, the organization has a works council. Most of the data transferred is personal, and some of the data that the organization collects is sensitive in nature, the processing of some of which is also outsourced to its branches in Asian countries.
For the outsourced work of its customers’ data processing, in order to initiate data transfer to another organizations outside EU, which is the most appropriate among the following?
Answer: D
Question: 100
APEC privacy framework envisages common principles such as Notice, Collection limitation, Use Limitation, Access and Correction, Security/Safeguards, and Accountability. But it differs from the EU Data Protection Directive in which of the below aspect?
Answer: B