PDPF Practice Questions
Privacy and Data Protection Foundation
Last Update 19 hours ago
Total Questions : 149
Dive into our fully updated and stable PDPF practice test platform, featuring all the latest Privacy & Data Protection exam questions added this week. Our preparation tool is more than just a Exin study aid; it's a strategic advantage.
Our free Privacy & Data Protection practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about PDPF. Use this test to pinpoint which areas you need to focus your study on.
To comply with the General Data Protection Regulation (GDPR) it is necessary to create a procedure for reporting data breaches to the Supervisory Authority.
As the controller is a public administration agency, which option is a requirement for this procedure?
A gentleman has a loan denied by the bank’s system that he has been a customer for many years. He is disgusted, because the loan would make it possible to hold the wedding of his only granddaughter.
He contacts the bank and asks for explanations. He wants to know exactly why his loan was denied and based on what information.
What right is required by the data subject according to the GDPR?
The GDPR contains several items. Which of these contains mandatory requirements?
A secretary at a pediatric cardiology clinic instead of sending the doctor the list of patients scheduled for the day, sends it to all those responsible registered for the children with scheduled appointments.
According to the GDPR, does the Supervisory Authority need to be notified? And those responsible for the data holders?
In its Article 9 the GDPR categorizes some types of personal data as “sensitive”.
Of these below which are considered sensitive?
A shopkeeper wants to register how many visitors enter his shop every day. A system detects the MAC- address of each visitor’s smartphone. It is impossible for the shopkeeper to identify the owner of the phone from this signal, but telephone providers can link the MAC-address to the owner of the phone. According to the GDPR, is the shopkeeper allowed to use this method?
Subcontracting treatment is regulated by contract or other regulatory act under Union or Member State law, which links the processor to the controller.
What this contract or other regulatory act stipulates?
The General Data Protection Regulation (GDPR) is based on the principles of proportionality and subsidiarity.
What is the meaning of “proportionality” in this context?
A personal data breach has occurred, and the controller is writing a draft notification for the supervisory authority. The following information is already in the notification:
-The nature of the personal data breach and its possible consequences.
-Information regarding the parties that can provide additional information about the data breach.
What other information must the controller provide?
What is the term used in the General Data Protection Regulation (GDPR) for the disclosure of, or unauthorized access to, personal data?
