Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple70

Pass the IAPP Certified Information Privacy Professional CIPP-C Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam CIPP-C Premium Access

View all detail and faqs for the CIPP-C exam


406 Students Passed

94% Average Score

96% Same Questions
Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions
Questions # 1:

What is required through the "circle of care" concept under Canadian health information privacy law?

Options:

A.

Health information custodians or trustees be specified only by applicable law or regulation

B.

An individual's consent may be implied unless the individual has refused consent or if the purpose of the disclosure is not to provide health care.

C.

Notification to the individual be made in the event of a data breach of personal health information (PHI) by an organization that is based in Canada

D.

Consent must be expressed or implied when a custodian discloses personal health information (PHI) to another custodian for the purpose of providing health care.

Questions # 2:

According to the federal Privacy Commissioner, what protection is missing from the Privacy Act regarding outsourcing of government work that contains personal information?

Options:

A.

A statement preventing the vendor to whom the information is outsourced to subcontract its processing.

B.

A statement granting the Privacy Commissioner the right to issue orders following an investigation into a possible data breach.

C.

A statement requiring the government agency to complete a Privacy Impact Assessment (PIA) prior to outsourcing to a third party.

D.

A statement indicating that the government institution from which the information is outsourced remains accountable for its security.

Questions # 3:

The movement toward comprehensive privacy and data protection laws can be attributed to a combination of three major factors: the need to remedy past injustices, the need to promote a digital economy and the need to ensure consistency with?

Options:

A.

Self-regulatory laws.

B.

Pan-European laws.

C.

Pan-Asian laws.

D.

Global laws.

Questions # 4:

Which action will help a business prove compliance under Canada’s Anti-Spam Legislation (CASL)?

Options:

A.

Demonstrating the dissolution of a personal relationship before communication was sent.

B.

Keeping records of express and implied consent of commercial electronic messages.

C.

Posting a list of CASL guidelines on a company's website for customers to read.

D.

Providing an opt-out mechanism.

Questions # 5:

Which organization was the primary influence in the development of Canadian privacy with their publication of a set of eight privacy principles?

Options:

A.

The Organization for Economic Co-operation and Development (OECD).

B.

The Canadian Institute of Chartered Accountants

C.

The Center for Democracy and Technology (CRT)

D.

The Canadian Standards Association (CSA).

Questions # 6:

Oversight authorities allow the following types of consent EXCEPT?

Options:

A.

Implied consent at the time of collection.

B.

Verbal consent given to the person collecting the information.

C.

Written consent included with the information that is collected.

D.

General consent covering all activities associated with the personal information.

Questions # 7:

A federally regulated company based in Ontario has customers in Ontario, Quebec, New Brunswick, Alberta and British Columbia. Unfortunately, a third-party vendor that provides marketing support to the company experiences a privacy breach which impacts the personal information of all its customers across the provinces where it operates.

The Privacy Officer determines that the breach causes a real risk of significant harm to their customers and is tasked with reporting the breach to the relevant regulators.

With which provincial privacy regulators does the company have to file a report?

Options:

A.

It is unnecessary to file a report with any provinces because the company is federally regulated

B.

All of the provinces where its customers are located

C.

New Brunswick and British Columbia only

D.

Quebec and Alberta only

Questions # 8:

What can be concluded from the Blood Tribe case regarding the Privacy Commissioner's access to information?

Options:

A.

The commissioner cannot receive information unless it is gathered under oath.

B.

The commissioner cannot ask an organization to prove that a document is privileged.

C.

The commissioner can compel the production of all documents that are relevant to the investigation.

D.

The commissioner can officially request proof that desired information is subject to solicitor-client privilege.

Questions # 9:

Why is biometric information considered sensitive personal information in almost all circumstances?

Options:

A.

It is user specific information that can easily be stored and accessed to identify an individual or group of individuals.

B.

It can be applied broadly to link many pieces of personal information and creates security vulnerabilities.

C.

It is distinctive, unlikely to vary overtime, difficult to change and largely unique to the individual.

D.

It is easy to recognize and reproduce with increasing computer processing power.

Questions # 10:

Which falls under the jurisdiction of the Personal Information Protection and Electronic Documents Act (PIPEDA)?

Options:

A.

Personal information collected by private businesses for journalistic or artistic purposes.

B.

Personal health information (PHI) handled by private enterprises in provinces that have adopted substantially similar legislation.

C.

Personal information disclosed across provincial or national borders by organizations such as credit reporting agencies or list marketers.

D.

Personal information such as names, titles and contact information used by businesses to communicate with employees regarding their profession.

Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.