CDPSE Actual Questions - Instant Download 122 Questions [Q43-Q58]

Share

CDPSE Actual Questions - Instant Download 122 Questions

Download Free Latest Exam CDPSE Certified Sample Questions


ISACA CDPSE Exam Certification Details:

Exam NameISACA Certified Data Privacy Solutions Engineer (CDPSE)
Number of Questions120
Sample QuestionsISACA CDPSE Sample Questions
Duration210 mins
Books / TrainingVirtual Instructor-Led Training
In-Person Training & Conferences
Customized, On-Site Corporate Training
CDPSE Planning Guide
Exam CodeCDPSE
Passing Score450 / 800
Exam Price ISACA Nonmember$760 (USD)
Schedule ExamExam Registration

 

NEW QUESTION 43
An organization uses analytics derived from archived transaction data to create individual customer profiles for customizing product and service offerings. Which of the following is the IT privacy practitioner's BEST recommendation?

  • A. Anonymize personal data.
  • B. Discontinue the creation of profiles.
  • C. Implement strong access controls.
  • D. Encrypt data at rest.

Answer: A

 

NEW QUESTION 44
An organization wants to ensure that endpoints are protected in line with the privacy policy. Which of the following should be the FIRST consideration?

  • A. Hardening the operating systems of endpoint devices
  • B. Implementing network traffic filtering on endpoint devices
  • C. Managing remote access and control
  • D. Detecting malicious access through endpoints

Answer: B

 

NEW QUESTION 45
Which of the following helps define data retention time is a stream-fed data lake that includes personal data?

  • A. Data lake configuration
  • B. Data privacy standards
  • C. Privacy impact assessments (PIAs)
  • D. Information security assessments

Answer: C

 

NEW QUESTION 46
Which of the following should be done FIRST to establish privacy to design when developing a contact-tracing application?

  • A. Conduct a development environment review.
  • B. Conduct a privacy impact assessment (PIA).
  • C. Identify differential privacy techniques.
  • D. Identify privacy controls for the application.

Answer: C

 

NEW QUESTION 47
Which of the following BEST ensures data confidentiality across databases?

  • A. Data anonymization
  • B. Data catalog vocabulary
  • C. Logical data model
  • D. Data normalization

Answer: A

 

NEW QUESTION 48
Which of the following is the BEST approach for a local office of a global organization faced with multiple privacy-related compliance requirements?

  • A. Focus on global compliance before meeting local requirements.
  • B. Focus on developing a risk action plan based on audit reports.
  • C. Focus on requirements with the highest organizational impact.
  • D. Focus on local standards before meeting global compliance.

Answer: D

 

NEW QUESTION 49
An organization is creating a personal data processing register to document actions taken with personal dat a. Which of the following categories should document controls relating to periods of retention for personal data?

  • A. Data acquisition
  • B. Data input
  • C. Data archiving
  • D. Data storage

Answer: C

Explanation:
However, the risks associated with long-term retention have compelled organizations to consider alternatives; one is data archival, the process of preparing data for long-term storage. When organizations are bound by specific laws to retain data for many years, archival provides a viable opportunity to remove data from online transaction systems to other systems or media.

 

NEW QUESTION 50
Which of the following is the BEST way to hide sensitive personal data that is in use in a data lake?

  • A. Data masking
  • B. Data truncation
  • C. Data minimization
  • D. Data encryption

Answer: A

 

NEW QUESTION 51
When evaluating cloud-based services for backup, which of the following is MOST important to consider from a privacy regulation standpoint?

  • A. Data classification labeling
  • B. Data residing in another country
  • C. Volume of data stored
  • D. Privacy training for backup users

Answer: A

 

NEW QUESTION 52
An organization has a policy requiring the encryption of personal data if transmitted through email. Which of the following is the BEST control to ensure the effectiveness of this policy?

  • A. Conduct regular control self-assessments (CSAs).
  • B. Enforce annual attestation to policy compliance.
  • C. Provide periodic user awareness training on data encryption.
  • D. Implement a data loss prevention (DLP) tool.

Answer: D

 

NEW QUESTION 53
Which of the following is MOST important to establish within a data storage policy to protect data privacy?

  • A. Data redaction
  • B. Data quality assurance (QA)
  • C. Irreversible disposal
  • D. Collection limitation

Answer: D

 

NEW QUESTION 54
What is the BEST way for an organization to maintain the effectiveness of its privacy breach incident response plan?

  • A. Involve the privacy office in an organizational review of the incident response plan.
  • B. Require security management to validate data privacy security practices.
  • C. Hire a third party to perform a review of data privacy processes.
  • D. Conduct annual data privacy tabletop exercises.

Answer: B

Explanation:
Because many privacy incidents are also security incidents, the development of a privacy incident response plan should be performed in close cooperation with the security manager to avoid duplication of effort and to utilize existing response plan resources and practices.

 

NEW QUESTION 55
Which of the following is the MOST important consideration when writing an organization's privacy policy?

  • A. Including a development plan for personal data handling
  • B. Ensuring acknowledgment by the organization's employees
  • C. Aligning statements to organizational practices
  • D. Using a standardized business taxonomy

Answer: C

 

NEW QUESTION 56
How can an organization BEST ensure its vendors are complying with data privacy requirements defined in their contracts?

  • A. Compare contract requirements against vendor deliverables.
  • B. Review self-attestations of compliance provided by vendor management.
  • C. Perform penetration tests of the vendors' data security.
  • D. Obtain independent assessments of the vendors' data management processes.

Answer: A

 

NEW QUESTION 57
Which of the following is the GREATEST benefit of adopting data minimization practices?

  • A. Storage and encryption costs are reduced.
  • B. Data retention efficiency is enhanced.
  • C. The associated threat surface is reduced.
  • D. Compliance requirements are met.

Answer: B

Explanation:
Unfortunately, the financial liability portion of retained personal information rarely shows up on an organization's financial balance sheet. And yet it is indeed a liability: the impact on an organization when cybercriminals steal that information or when the information is misused is real, in the form of breach response costs, the costs related to reducing harm inflicted on affected parties (think of credit monitoring services, a frequent remedy for stolen credit card numbers), fines from governmental regulators, and the occasional class-action lawsuit.

 

NEW QUESTION 58
......

Free ISACA CDPSE Exam 2022 Practice Materials Collection: https://www.validdumps.top/CDPSE-exam-torrent.html

Prepare for your exam certification with our CDPSE Certified ISACA: https://drive.google.com/open?id=1DeDJUDeLecs3CfSGxQs57jVuDe8Z1dTD