Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 405 discussion

Actual exam question from ISC's CISSP
Question #: 405
Topic #: 1
[All CISSP Questions]

One of Canada’s leading pharmaceutical firms recently hired a Chief Data Officer (CDO) to oversee its data privacy program. The CDO has discovered the firm’s marketing department has been collecting information from individuals without their knowledge and consent via the company website. Which of the following privacy regulations should concern the CDO regarding this practice?

  • A. The Health Insurance Portability and Accountability Act (HIPAA)
  • B. The Privacy Act of 1974
  • C. The Fair Information Practice Principles (FIPPs)
  • D. The Personal Information Protection and Electronic Documents Act (PIPEDA)
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
1460168
3 months, 2 weeks ago
Selected Answer: D
I vote for D. ChatGPT4.0 says: The privacy regulation that should concern the Chief Data Officer (CDO) regarding the marketing department's practice of collecting information from individuals without their knowledge and consent via the company website is: D. The Personal Information Protection and Electronic Documents Act (PIPEDA)
upvoted 1 times
...
Soleandheel
11 months, 1 week ago
D. The Personal Information Protection and Electronic Documents Act (PIPEDA). PIPEDA is Canada's federal privacy law governing the collection, use, and disclosure of personal information by private sector organizations. It sets out rules for how organizations must handle individuals' personal information, including obtaining consent for the collection and use of personal data. Violating PIPEDA by collecting information without consent can result in significant penalties and fines. Therefore, the CDO should be concerned about ensuring compliance with PIPEDA and rectifying the unauthorized data collection practice.
upvoted 1 times
...
babaseun
1 year, 7 months ago
Selected Answer: D
CISSP official guide 9th Edition, Pg 167.... canadian law affects the processing of personal information related to Canadian residents. (PIPEDA) is a national-level law that restricts how commercial business may collect, use and disclose personal information.
upvoted 2 times
jackdryan
1 year, 6 months ago
D is correct
upvoted 1 times
...
...
Ernestokoro
1 year, 8 months ago
According to CISSP official guide 9th Edition, Pg 173 The United States has a number of privacy laws that affect the government’s use of information as well as the use of information by specific industries, such as financial services companies and healthcare organizations that handle sensitive information. The EU has a more comprehensive General Data Protection Regulation that governs the use and exchange of personal information. In Canada, the Personal Information Protection and Electronic Documents Act (PIPEDA) governs the use of personal information
upvoted 3 times
...
Arsh_2022
1 year, 8 months ago
D is right.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...