Which of the following types of information should be protected by a privacy program?
Privacy in the Modern Era

Quiz
•
Computers
•
Professional Development
•
Hard
Bob Riley
FREE Resource
20 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Customer records
Product plans
Trade secrets
All of the above
Answer explanation
All of these records are important to a business and may be considered sensitive. However, this does not mean that they would fall into the scope of a privacy program. Privacy programs are specifically intended to protect personal information and, of the information presented here, only customer records fall into that category. A cybersecurity program would be interested in protecting all these elements of information.
2.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Barry is consulting with his organization's cybersecurity team on the development of their cybersecurity program. Which one of the following would not be a typical objective of such a program?
Privacy
Confidentiality
Availability
Integrity
Answer explanation
The three main goals of a cybersecurity program are confidentiality, integrity, and availability. Although privacy and security objectives are often linked and interdependent, privacy is not one of the three cybersecurity objectives.
3.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Howard is assisting his firm in developing a new privacy program and wants to incorporate a privacy risk assessment process into the program. If Howard wishes to comply with industry best practices, how often should the firm conduct these risk assessments?
Monthly
Semiannually
Annually
Biannually
Answer explanation
Industry best practice calls for an annual privacy risk assessment designed to analyze the organization's current practices in light of the evolving privacy environment.
4.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Of the following fields, which fits into the "special categories of personal data" under GDPR?
Banking records
Union membership records
Educational records
Employment records
Answer explanation
The special categories of information under GDPR include information about racial and ethnic origin, political opinions, religious or philosophical beliefs, trade union membership, genetic information, biometric information, health data, and data about a person's sex life or sexual orientation. Other categories of information may be sensitive but do not fit into this definition.
5.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Katie is assessing her organization's privacy practices and determines that the organization previously collected customer addresses for the purpose of shipping goods and is now using those addresses to mail promotional materials. If this possibility was not previously disclosed, what privacy principle is the organization most likely violating?
Quality
Management
Notice
Security
Answer explanation
One of the provisions of the notice principle is that organizations should provide notice to data subjects before they use information for a purpose other than those that were previously disclosed.
6.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Kara is the chief privacy officer of an organization that maintains a database of customer information for marketing purposes. What term best describes the role of Kara's organization with respect to that database?
Data subject
Data custodian
Data controller
Data processor
Answer explanation
Kara's organization is collecting and processing this information for its own business needs. Therefore, it is best described as the data controller.
7.
MULTIPLE CHOICE QUESTION
30 sec • 1 pt
Richard would like to use an industry standard reference for designing his organization's privacy controls. Which one of the following ISO standards is best suited for this purpose?
ISO 27001
ISO 27002
ISO 27701
ISO 27702
Answer explanation
ISO 27701 covers best practices for implementing privacy controls. ISO 27001 and ISO 27002 relate to an organization's information security program. ISO 27702 does not yet exist.
Create a free account and access millions of resources
Similar Resources on Quizizz
23 questions
Chapter 9 Quiz

Quiz
•
Professional Development
20 questions
GCP-FOUND4

Quiz
•
Professional Development
20 questions
GCP-FOUND3

Quiz
•
Professional Development
15 questions
Sec+ CH.2 Review Test

Quiz
•
Professional Development
15 questions
Sec+ Quiz - 1

Quiz
•
Professional Development
20 questions
Part 4.1

Quiz
•
Professional Development
15 questions
AI Cybersecurity Quiz

Quiz
•
Professional Development
20 questions
ISC2 Certified in CyberSecurity Quiz - 2

Quiz
•
Professional Development
Popular Resources on Quizizz
15 questions
Multiplication Facts

Quiz
•
4th Grade
20 questions
Math Review - Grade 6

Quiz
•
6th Grade
20 questions
math review

Quiz
•
4th Grade
5 questions
capitalization in sentences

Quiz
•
5th - 8th Grade
10 questions
Juneteenth History and Significance

Interactive video
•
5th - 8th Grade
15 questions
Adding and Subtracting Fractions

Quiz
•
5th Grade
10 questions
R2H Day One Internship Expectation Review Guidelines

Quiz
•
Professional Development
12 questions
Dividing Fractions

Quiz
•
6th Grade