IAPP Certified Information Privacy Professional/United States (CIPP/US) - CIPP-US무료 덤프문제 풀어보기

Once a breach has been definitively established, which task should be prioritized next?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
Within what time period must a commercial message sender remove a recipient's address once they have asked to stop receiving future e-mail?

정답: D
설명: (Fast2test 회원만 볼 수 있음)
In March 2012, the FTC released a privacy report that outlined three core principles for companies handling consumer data. Which was NOT one of these principles?

정답: C
설명: (Fast2test 회원만 볼 수 있음)
What consumer service was the Fair Credit Reporting Act (FCRA) originally intended to provide?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
According to Section 5 of the FTC Act, self-regulation primarily involves a company's right to do what?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
What is a key way that the Gramm-Leach-Bliley Act (GLBA) prevents unauthorized access into a person's back account?

정답: A
설명: (Fast2test 회원만 볼 수 있음)
Which form of malicious online threat targets an individual user and pretends to be a legitimate party, such as a bank, to steal personal data?

정답: D
설명: (Fast2test 회원만 볼 수 있음)
The "Consumer Privacy Bill of Rights" presented in a 2012 Obama administration report is generally based on?

정답: C
설명: (Fast2test 회원만 볼 수 있음)
What consumer protection did the Fair and Accurate Credit Transactions Act (FACTA) require?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
SCENARIO
Please use the following to answer the next question:
Otto is preparing a report to his Board of Directors at Filtration Station, where he is responsible for the privacy program. Filtration Station is a U.S. company that sells filters and tubing products to pharmaceutical companies for research use. The company is based in Seattle, Washington, with offices throughout the U.S. and Asia. It sells to business customers across both the U.S. and the Asia-Pacific region. Filtration Station participates in the Cross-Border Privacy Rules system of the APEC Privacy Framework.
Unfortunately, Filtration Station suffered a data breach in the previous quarter. An unknown third party was able to gain access to Filtration Station's network and was able to steal data relating to employees in the company's Human Resources database, which is hosted by a third-party cloud provider based in the U.S. The HR data is encrypted. Filtration Station also uses the third-party cloud provider to host its business marketing contact database. The marketing database was not affected by the data breach. It appears that the data breach was caused when a system administrator at the cloud provider stored the encryption keys with the data itself.
The Board has asked Otto to provide information about the data breach and how updates on new developments in privacy laws and regulations apply to Filtration Station. They are particularly concerned about staying up to date on the various U.S. state laws and regulations that have been in the news, especially the California Consumer Privacy Act (CCPA) and breach notification requirements.
What can Otto do to most effectively minimize the privacy risks involved in using a cloud provider for the HR data?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
All of the following are tasks in the "Discover" phase of building an information management program EXCEPT?

정답: C
설명: (Fast2test 회원만 볼 수 있음)
In 2012, the White House and the FTC both issued reports advocating a new approach to privacy enforcement that can best be described as what?

정답: A
설명: (Fast2test 회원만 볼 수 있음)
In what way does the "Red Flags Rule" under the Fair and Accurate Credit Transactions Act (FACTA) relate to the owner of a grocery store who uses a money wire service?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
SCENARIO
Please use the following to answer the next question:
Felicia has spent much of her adult life overseas, and has just recently returned to the U.S. to help her friend Celeste open a jewelry store in California. Felicia, despite being excited at the prospect, has a number of security concerns, and has only grudgingly accepted the need to hire other employees. In order to guard against the loss of valuable merchandise, Felicia wants to carefully screen applicants. With their permission, Felicia would like to run credit checks, administer polygraph tests, and scrutinize videos of interviews. She intends to read applicants' postings on social media, ask question NO:s about drug addiction, and solicit character references. Felicia believes that if potential employees are serious about becoming part of a dynamic new business, they will readily agree to these requirements.
Felicia is also in favor of strict employee oversight. In addition to protecting the inventory, she to prevent mistakes during transactions, which will require video monitoring. She also wants to regularly check the company vehicle's GPS for locations visited by employees. She also believes that employees who use their own devices for work-related purposes should agree to a certain amount of supervision.
Given her high standards, Felicia is skeptical about the proposed location of the store. She has been told that many types of background checks are not allowed under California law. Her friend Celeste thinks these worries are unfounded, as long as applicants verbally agree to the checks and are offered access to the results. Nor does Celeste share Felicia's concern about state breach notification laws, which, she claims, would be costly to implement even on a minor scale.
Celeste believes that even if the business grows a customer database of a few thousand, it's unlikely that a state agency would hassle an honest business if an accidental security incident were to occur.
In any case, Celeste feels that all they need is common sense ?like remembering to tear up sensitive documents before throwing them in the recycling bin. Felicia hopes that she's right, and that all of her concerns will be put to rest next month when their new business consultant (who is also a privacy professional) arrives from North Carolina.
Based on Felicia's Bring Your Own Device (BYOD) plan, the business consultant will most likely advise Felicia and Celeste to do what?

정답: B
설명: (Fast2test 회원만 볼 수 있음)
Most states with data breach notification laws indicate that notice to affected individuals must be sent in the "most expeditious time possible without unreasonable delay." By contrast, which of the following states currently imposes a definite limit for notification to affected individuals?

정답: A
설명: (Fast2test 회원만 볼 수 있음)

우리와 연락하기

문의할 점이 있으시면 메일을 보내오세요. 12시간이내에 답장드리도록 하고 있습니다.

근무시간: ( UTC+9 ) 9:00-24:00
월요일~토요일

서포트: 바로 연락하기 

English Deutsch 繁体中文 日本語