Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

PDPF Exam Dumps - Exin Privacy & Data Protection Questions and Answers

Question # 14

A company’s director’s notebook is accidentally wet, which permanently damages the equipment so that it cannot recover its data.

The lost data concerned the financial reports of the company. What happened in this case according to GDPR?

Options:

A.

A vulnerability

B.

A threat

C.

A security incident

D.

A data violation

Buy Now
Question # 15

The GDPR contains several items. Which of these contains mandatory requirements?

Options:

A.

Recitals

B.

Articles

Buy Now
Question # 16

A processor is instructed to report on customers who bought a product both last month and at least once in the three months before that. Unfortunately, the processor makes a mistake and uses personal data collected by another controller for a different purpose.

The mistake is found before the report is created, and nobody has access to personal date he or she should not have had access to.

How should the processor act on this situation and what should the controller do, if anything?

Options:

A.

The processor must notify the controller and the controller must notify the Data Protection Authority of a data breach.

B.

The processor must notify the controller of a data breach. The controller must assess the possible risk to the data subjects.

C.

The processor must notify the Data Protection Authority of a data breach. The controller must execute a PIA to assess the risk to data subjects.

D.

The processor must restart processing using the right data. There is no need for the controller to act.

Buy Now
Question # 17

We know that when browsing the internet there is a lot of personal data that is collected. One mechanism for collecting this data is cookies.

How do marketers use this collected personal data?

Options:

A.

Collecting logs from web servers and running campaigns promoting products on social media.

B.

Collecting the logs from the web servers, they analyze which products are most visited and sold, promoting marketing campaigns for these products.

C.

They create behavioral profiles, applying tags to web page visitors. These profiles can be marketed and used in targeted marketing campaigns.

Buy Now
Question # 18

What year did the General Data Protection Regulation (GDPR) come into force?

Options:

A.

2016

B.

2018

C.

2017

D.

2019

Buy Now
Question # 19

What is the main purpose of the General Data Protection Regulation (GDPR)?

Options:

A.

Protecting the data of everyone in Europe.

B.

Protect the data of everyone in the world.

C.

Protect data of data subjects located in the European Economic Area (EEA), regardless of the country of processing.

D.

Protect confidential business data.

Buy Now
Question # 20

According to the General Data Protection Regulation (GDPR) which covers the concept “Compulsory Corporate Rules”?

Options:

A.

Decision made by a corporation to transfer data to another country.

B.

Contractual clauses to transfer data to a country that does not have a data protection law.

C.

A set of rules used by a group of companies regarding the protection of personal data in international transfers

D.

Rules covering data transfers between several countries.

Buy Now
Question # 21

A shopkeeper wants to register how many visitors enter his shop every day. A system detects the MAC- address of each visitor’s smartphone. It is impossible for the shopkeeper to identify the owner of the phone from this signal, but telephone providers can link the MAC-address to the owner of the phone. According to the GDPR, is the shopkeeper allowed to use this method?

Options:

A.

Yes, because the shopkeeper cannot identify the owner of the telephone

B.

No, because the telephone providers are the owners of the MAC-addresses.

C.

No, because the telephone’s MAC-address must be regarded as personal data.

D.

Yes, because the visitor has automatically consented by connecting to the Wi-Fi

Buy Now
Question # 22

Subcontracting treatment is regulated by contract or other regulatory act under Union or Member State law, which links the processor to the controller.

What this contract or other regulatory act stipulates?

Options:

A.

A process for testing, assessing and regularly evaluating the effectiveness of technical and organizational measures to ensure safe treatment.

B.

The processor assists the driver through technical and organizational measures to enable it to fulfill its obligation to respond to requests from data subjects.

C.

The description of categories of data subjects and categories of personal data

D.

The purpose of data processing

Buy Now
Question # 23

A gentleman has a loan denied by the bank’s system that he has been a customer for many years. He is disgusted, because the loan would make it possible to hold the wedding of his only granddaughter.

He contacts the bank and asks for explanations. He wants to know exactly why his loan was denied and based on what information.

What right is required by the data subject according to the GDPR?

Options:

A.

Right to limitation of treatment

B.

Right to rectification

C.

Data subject’s right of access

D.

Right to object and automated individual decision-making

Buy Now
Exam Code: PDPF
Exam Name: Privacy and Data Protection Foundation
Last Update: Feb 22, 2025
Questions: 149
PDPF pdf

PDPF PDF

$25.5  $84.99
PDPF Engine

PDPF Testing Engine

$28.5  $94.99
PDPF PDF + Engine

PDPF PDF + Testing Engine

$40.5  $134.99