Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CIPM All Questions

View all questions & answers for the CIPM exam

Exam CIPM topic 1 question 227 discussion

Actual exam question from IAPP's CIPM
Question #: 227
Topic #: 1
[All CIPM Questions]

SCENARIO -
Please use the following to answer the next question:

Today is your first day at a fast growing international real estate firm headquartered in New York, with offices in Canada and Germany. You are the firm's first ever privacy officer.

While touring the office to meet your new colleagues and learn the layout of the office, you notice piles of printing jobs left on the printer in the copy room. You also note a recycle bin and garbage can near the printers. With a quick glance, you see a completed loan application form print out with applicant name, social security number and home address lying in the recycle bin. You make a note to follow up immediately.

You are then introduced to the head of IT who gives you a warm welcome and explains his star project this year - enterprise CRM (Customer Relationship Management) mobility. He is very proud that he is leading this innovation that allows firm-wide employees to access the existing CRM database remotely from anywhere on the Internet. The business value of this mobility initiative is significant. Since he doesn't have internal web development expertise, he outsourced the development work to a small IT firm in New York that has just successfully delivered another IT initiative for the company.

After the tour you start working on a plan based on your observations. One immediate action is to schedule a meeting with the head of IT to discuss the CRM mobility project.

Which of the following actions should you take to measure the firm's privacy compliance status?

  • A. Prepare a data inventory.
  • B. Perform a vulnerability assessment.
  • C. Assess the current privacy program.
  • D. Conduct a Privacy Impact Assessment (PIA).
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Cock
1 year ago
Selected Answer: C
To measure the firm's privacy compliance status in the given scenario, the following action should be taken: C. Assess the current privacy program. Assessing the current privacy program is a crucial step in understanding the firm's privacy compliance status. This assessment will help identify any existing privacy policies, procedures, and practices in place, as well as evaluate their effectiveness and alignment with applicable privacy laws and regulations. It will provide insights into the firm's privacy governance structure, data handling practices, employee training, and privacy risk management.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...