Summer Sale Special 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: ex2p65

Exact2Pass Menu

Privacy and Data Protection Foundation

Last Update 19 hours ago Total Questions : 149

The Privacy and Data Protection Foundation content is now fully updated, with all current exam questions added 19 hours ago. Deciding to include PDPF practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our PDPF exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these PDPF sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Privacy and Data Protection Foundation practice test comfortably within the allotted time.

Question # 4

In the GDPR, some types of personal data are regarded as special category personal data. Which personal data are considered special category personal data?

A.

An address list of members of a political party

B.

A genealogical register of someone’s ancestors

C.

A list of payments made using a credit card

Question # 5

According to the GDPR, what is a mandatory topic in a DPIA report?

A.

Systematic description of the fiduciary duties to ensure compliance to all relevant laws and regulations

B.

An assessment of the necessity and proportionality of the processing operations in relation to the purposes

C.

The documentation of the risks to the rights and freedoms of the data protection officer

D.

The measures envisaged to address the privacy compliance frameworks risks

Question # 6

What is the main objective of the “Lifecycle Protection” principle?

A.

All appropriate measures shall be taken to ensure that inaccurate data, taking into account the purposes for which they are processed, are erased or rectified without a delay.

B.

The processing of data must take place in a manner that ensures its security, including protection against unauthorized or unlawful processing and accidental loss, destruction or damage.

C.

Security measures should be in place from the moment data are collected until they are deleted.

D.

Data must be collected for specified, explicit and legitimate purposes and may not be further processed in a manner incompatible with those purposes.

Question # 7

We know that when a personal data breach occurs, the data controller (Controller) must notify the Supervisory Authority within 72 hours, without justified delay. However, should the Controller do if it is unable to communicate within this time?

A.

Send the notification with the date of the violation changed, to remain within 72 hours.

B.

After 72 hours there is no longer any need to send notification of personal data breach.

C.

Do not notify and seek ways to hide the violation so that the Supervisory Authority or the titleholders are made aware

D.

Send the notification, even after 72 hours, accompanied by the reasons for the delay

Question # 8

Under what EU legislation is data transfer between the EEA and the U.S.A. allowed?

A.

An adequacy decision based on the Privacy Shield program

B.

An adequacy decision by reason of US domestic legislation

C.

The Transatlantic Trade an Investment Partnership (TTIP)

D.

The U.S.A.’s commitment to join the European Economic Area

Question # 9

A company’s director’s notebook is accidentally wet, which permanently damages the equipment so that it cannot recover its data.

The lost data concerned the financial reports of the company. What happened in this case according to GDPR?

A.

A vulnerability

B.

A threat

C.

A security incident

D.

A data violation

Question # 10

What is called the adequacy decision that allows data transfer between the United States and the European Economic Area (EEA)?

A.

Regulation for transfer of personal data between EEA and USA/

B.

Privacy Shield

C.

General Data Protection Law (GDPL)

D.

General Data Protection Regulation (GDPR)

Go to page: