Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Certified Information Privacy Professional/ Canada (CIPP/C)

Last Update 3 hours ago Total Questions : 76

The Certified Information Privacy Professional/ Canada (CIPP/C) content is now fully updated, with all current exam questions added 3 hours ago. Deciding to include CIPP-C practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our CIPP-C exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these CIPP-C sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Certified Information Privacy Professional/ Canada (CIPP/C) practice test comfortably within the allotted time.

Question # 4

A federally regulated company based in Ontario has customers in Ontario, Quebec, New Brunswick, Alberta and British Columbia. Unfortunately, a third-party vendor that provides marketing support to the company experiences a privacy breach which impacts the personal information of all its customers across the provinces where it operates.

The Privacy Officer determines that the breach causes a real risk of significant harm to their customers and is tasked with reporting the breach to the relevant regulators.

With which provincial privacy regulators does the company have to file a report?

A.

It is unnecessary to file a report with any provinces because the company is federally regulated

B.

All of the provinces where its customers are located

C.

New Brunswick and British Columbia only

D.

Quebec and Alberta only

Question # 5

A private sector daycare’s portal for parents stores their children’s photos, allergy information and date of birth. A parent has asked about the portal’s security requirements and in three months still not has received an answer. What is missing from the daycare’s procedures?

A.

Ensuring transparency.

B.

Responding to the parent ' s request within 30 days.

C.

Ensuring strong encryption and security measures.

D.

Completing a real risk of significant harm assessment (RROSH).

Question # 6

Under the Personal Information Protection and Electronic Documents Act (PIPEDA), an organization must maintain a record of every breach of security safeguards involving personal information for a minimum of?

A.

3 months.

B.

12 months.

C.

24 months.

D.

36 months

Question # 7

According to the federal Privacy Act, before collecting personal information, public-sector organizations are required to ensure that any of the following are met EXCEPT?

A.

Collection directly relates to, and is necessary for, operating a program of that organization.

B.

Collection is for the purposes of a law enforcement action.

C.

Collection is expressly authorized under an act.

D.

Collection is authorized by consent.

Question # 8

Oversight authorities allow the following types of consent EXCEPT?

A.

Implied consent at the time of collection.

B.

Verbal consent given to the person collecting the information.

C.

Written consent included with the information that is collected.

D.

General consent covering all activities associated with the personal information.

Question # 9

Safeguarding and securing information that is considered sensitive under privacy legislation generally falls into three categories: Administrative, Technical and?

A.

Legal.

B.

Physical.

C.

Personal.

D.

Logistical.

Question # 10

Which of the following existing frameworks is least effective in addressing emerging AI issues while specific AI legislation is being decided?

A.

The Canada Consumer Product Safety Act.

B.

The Motor Vehicle Safety Act.

C.

The Copyright Act.

D.

The Criminal Code.

Go to page: