Black Friday Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: clap70

DCPP-01 DSCI certified Privacy Professional (DCPP) Questions and Answers

Questions 4

Which type of data qualify as Sensitive Personal Data or Information under Section 43A of IT (Amendment) Act, 2008?

Options:

A.

Sexual orientation

B.

Political affiliation

C.

Religion and caste

D.

Call Data Records (CDRs)

Buy Now
Questions 5

What are the roles an organization can play from privacy perspective?

i. Data Controller – determines the means and purpose of processing of data which is collected from its end customers

ii. Data Controller – determines the means and purpose of processing of data which is collected from its employees

iii. Data Sub-Processor – processes personal data on behalf of data processor

iv. Joint Controller – determines the means and purpose of data processing along with other data controller

Please select correct option:

Options:

A.

i, ii and iii

B.

ii, iii and iv

C.

i, iii and iv

D.

i, ii, iii and iv

Buy Now
Questions 6

Which of the following statement about Personally Identifiable Information (PII) is true?

Options:

A.

PII is necessarily a single data element, not a combination of data elements, which can uniquely identify an individual

B.

PII is a subset of Sensitive Personal Information

C.

PII is any information about a legal entity including details of its registration or any information that may allow its easy identification

D.

None of the above

Buy Now
Questions 7

Which of the following does not fall under the category of Sensitive Personal Data or Information as defined in the Information Technology (Reasonable Security Practices and Procedures and Sensitive Data or Information) Rules, 2011?

Options:

A.

Religious Beliefs

B.

Medical records and history

C.

Sexual orientation

D.

Password

Buy Now
Questions 8

Privacy enhancing tools aim to allow users to take one or more of the following actions related to their personal data that is sent to, and used by online service providers, merchants or other users:

i. Increase control over their personal data

ii. Choose whether to use services anonymously or not

iii. Obtain informed consent about sharing their personal data

iv. Opt-out of behavioral advertising or any other use of data

Please select correct option from below:

Options:

A.

Only i

B.

Only i and ii

C.

All

D.

All except iii

Buy Now
Questions 9

Historically, which of these events led to the formation of our current concept of privacy?

Options:

A.

Civil rights are fundamental liberties

B.

Declaration of human rights

C.

The right to be left alone

D.

A binding corporate rule

Buy Now
Questions 10

Regarding projects such as Aadhaar, the National Population Register (NPR), etc. that involve national government projects specific to India, which of the following statements is accurate?

Options:

A.

Citizens can choose not to submit their biometric details to the environment and can complete the process without providing their biometrics

B.

Prior to and during collection of data, data subjects are not properly notified

C.

In India, biometric data collection is a statutory requirement

D.

Once their personal information has been shared with the project, data subjects are not limited in how they can exercise control over how it will be used

Buy Now
Questions 11

According to which of the following data privacy laws does "challenging compliance" fall under?

Options:

A.

PIPEDA

B.

Federal Data Protection Act

C.

UK Data Protection Act

D.

APEC Framework

Buy Now
Questions 12

According to IT (Amendment) Act,2008, who should designate a grievance officer to redress grievance(s) of provider of information?

Options:

A.

Data processor

B.

Third party agency collecting personal information

C.

Body corporate, which determines the means and purpose of data processing

D.

Natural person sharing his/her information

Buy Now
Questions 13

The Indian cancer-treatment hospital Mumbai Hospital has organized a free health checkup for women in a specific district after securing adequate permission from the appropriate authority. During the camp the hospital staffs will be feeding. A computer connected to the hospital network system stores the medical records of these women. Are the participants at this camp required to be informed of the hospital's privacy policy and asked to consent to its collection and processing of personal information?

Options:

A.

Certainly, in a language that they would understand

B.

Yes, in any language the hospital desires

C.

They won't, since it's a free health camp for them

D.

The law does not require the same in this case

Buy Now
Questions 14

Which of the following privacy principle deals with informed consent of the data subject before sharing the personal information (of the data subject) to third parties for processing?

Options:

A.

Collection limitation

B.

Purpose limitation

C.

Disclosure of information

D.

Accountability

Buy Now
Questions 15

Indian constitution does not expressly provide for the “right to privacy” to its citizens. However, there were various judicial pronouncements of the apex court which finally established the “right to privacy” as a fundamental right subsumed under Article 21 of the constitution of India. Article 21 inter alia provides and protects the __________________.

Options:

A.

Right to Life and Personal liberty

B.

Right to Opportunity

C.

Right to Freedom of Speech and Expression

D.

Right to Equality before law

Buy Now
Questions 16

For negligence in implementing and maintaining the reasonable security practices and procedures for protecting Sensitive Personal Data or Information (SPDI) as mentioned in Section 43A and associated rules under IT (Amendment) Act, 2008, a corporate entity may be liable to pay compensation of up to___________

Options:

A.

Rs. 50,000,000

B.

Rs. 500,000,000

C.

Rs. 5,000,000

D.

Upper limit not defined

Buy Now
Questions 17

With respect to ‘Data Minimization’ privacy principle, please select the correct statements from the following:

Options:

A.

Right to object by the data subject for minimizing the collection of personal information

B.

Data controllers should limit the amount of data collected to what is directly relevant and necessary to accomplish a specified purpose

C.

Data controllers should retain the data only for as long as is necessary to fulfil the purpose for which it was collected

D.

Process of analyzing and minimizing the collected data into useful information

Buy Now
Questions 18

‘Challenging Compliance’ as a privacy principle is covered in which of the following data protection/ privacy act?

Options:

A.

Federal Data Protection Act, Germany

B.

UK Data Protection Act

C.

PIPEDA

D.

Singapore Data Protection Act

Buy Now
Exam Code: DCPP-01
Exam Name: DSCI certified Privacy Professional (DCPP)
Last Update: Nov 23, 2024
Questions: 122
DCPP-01 pdf

DCPP-01 PDF

$25.5  $84.99
DCPP-01 Engine

DCPP-01 Testing Engine

$30  $99.99
DCPP-01 PDF + Engine

DCPP-01 PDF + Testing Engine

$40.5  $134.99