Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CIPM All Questions

View all questions & answers for the CIPM exam

Exam CIPM topic 1 question 77 discussion

Actual exam question from IAPP's CIPM
Question #: 77
Topic #: 1
[All CIPM Questions]

What is one obligation that the General Data Protection Regulation (GDPR) imposes on data processors?

  • A. To honor all data access requests from data subjects.
  • B. To inform data subjects about the identity and contact details of the controller.
  • C. To implement appropriate technical and organizational measures that ensure an appropriate level of security.
  • D. To carry out data protection impact assessments in cases where processing is likely to result in high risk to the rights and freedoms of individuals.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Boerenkool
Highly Voted 1 year, 8 months ago
Should be C. In Gdpr the controller must execute the dpia, not the processor
upvoted 5 times
...
giomike
Most Recent 9 months, 3 weeks ago
C:\ One obligation that the General Data Protection Regulation (GDPR) imposes on data processors is the requirement to implement appropriate technical and organizational measures to ensure the security of personal data. This includes measures such as encryption, pseudonymization, and regular testing and evaluation of the effectiveness of security measures.
upvoted 1 times
...
carlosbui
1 year ago
should be C
upvoted 1 times
...
[Removed]
1 year, 2 months ago
Selected Answer: C
Should be C
upvoted 1 times
...
Ssourav
1 year, 3 months ago
Selected Answer: C
Art 32 (1) Taking into account the state of the art, the costs of implementation and the nature, scope, context and purposes of processing as well as the risk of varying likelihood and severity for the rights and freedoms of natural persons, the controller and the processor shall implement appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including inter alia as appropriate:
upvoted 2 times
...
AlwinL
1 year, 6 months ago
Ans should be C. Art. 32 GDPR - Security of processing
upvoted 3 times
...
bilgecell
1 year, 6 months ago
Hi, Article 35 of the GDPR, Processors must carry out DPIA under some conditions such as processing sensitive data, the use of new tech, processing health data , protecting of public health, large-scale processing of personal data.
upvoted 1 times
...
sham222
1 year, 7 months ago
Selected Answer: C
Under GDPR, data processors have an obligation to implement appropriate technical and organizational measures that ensure an appropriate level of security for personal data, taking into account the state of the art, the costs of implementation, and the nature, scope, context, and purposes of processing as well as the risk of varying likelihood and severity for the rights and freedoms of natural persons. This includes measures such as pseudonymization and encryption of personal data, ensuring the confidentiality, integrity, availability, and resilience of processing systems and services, and regularly testing, assessing, and evaluating the effectiveness of security measures.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...