CERTIFIED-DATA-ANALYST-ASSOCIATE · Question #46
CERTIFIED-DATA-ANALYST-ASSOCIATE Question #46: Real Exam Question with Answer & Explanation
The correct answer is E: All of these considerations. Working with PII requires a layered approach to compliance, which is why E (All of these considerations) is correct - analysts must simultaneously follow their organization's internal policies, the laws where data was collected, and the laws where analysis is performed, since the
Question
Which of the following should data analysts consider when working with personally identifiable information (PII) data?
Options
- AOrganization-specific best practices for Pll data
- BLegal requirements for the area in which the data was collected
- CNone of these considerations
- DLegal requirements for the area in which the analysis is being performed
- EAll of these considerations
Explanation
Working with PII requires a layered approach to compliance, which is why E (All of these considerations) is correct - analysts must simultaneously follow their organization's internal policies, the laws where data was collected, and the laws where analysis is performed, since these can all differ and all carry real obligations.
Why the distractors fail: Option A alone is insufficient because internal policies don't override legal requirements. Options B and D each capture only one geographic layer of legal obligation - data collected in the EU under GDPR still carries those protections even if analysis happens in a jurisdiction with weaker laws, and vice versa. Option C is obviously wrong; ignoring PII considerations exposes both the analyst and the organization to serious legal and ethical risk.
Memory tip: Think of PII compliance as a three-layer sandwich - org policy (top), collection jurisdiction law (middle), analysis jurisdiction law (bottom). You must satisfy all three layers, never just one.
Community Discussion
No community discussion yet for this question.