Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CIPM All Questions

View all questions & answers for the CIPM exam

Exam CIPM topic 1 question 229 discussion

Actual exam question from IAPP's CIPM
Question #: 229
Topic #: 1
[All CIPM Questions]

SCENARIO -
Please use the following to answer the next question:

Today is your first day at a fast growing international real estate firm headquartered in New York, with offices in Canada and Germany. You are the firm's first ever privacy officer.

While touring the office to meet your new colleagues and learn the layout of the office, you notice piles of printing jobs left on the printer in the copy room. You also note a recycle bin and garbage can near the printers. With a quick glance, you see a completed loan application form print out with applicant name, social security number and home address lying in the recycle bin. You make a note to follow up immediately.

You are then introduced to the head of IT who gives you a warm welcome and explains his star project this year - enterprise CRM (Customer Relationship Management) mobility. He is very proud that he is leading this innovation that allows firm-wide employees to access the existing CRM database remotely from anywhere on the Internet. The business value of this mobility initiative is significant. Since he doesn't have internal web development expertise, he outsourced the development work to a small IT firm in New York that has just successfully delivered another IT initiative for the company.

After the tour you start working on a plan based on your observations. One immediate action is to schedule a meeting with the head of IT to discuss the CRM mobility project.

While reviewing the contract with the firm the CRM mobility project was outsourced to, all of the following should be mandatory EXCEPT?

  • A. Right to audit.
  • B. Breach notification.
  • C. Security Commitment.
  • D. Service level agreements.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
thecheaterz
5 months, 2 weeks ago
Selected Answer: D
SLA are common in contracts, but when it comes to a DPA, audit, breach and security commitments make more sense
upvoted 2 times
...
rhyst1921
6 months, 1 week ago
Selected Answer: D
While SLAs are important for defining the level of service expected from the outsourced firm, they might not directly address data security and privacy concerns.
upvoted 2 times
...
DPRamone
8 months, 3 weeks ago
Selected Answer: C
A, B, and D are quantifiable, verifiable, and enforeceable. C is not.
upvoted 1 times
...
Cock
1 year ago
Selected Answer: A
A? Maybe
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...