nerdexam
IAPP

CIPP-E · Question #124

Which GDPR requirement will present the most significant challenges for organizations with Bring Your Own Device (BYOD) programs?

The correct answer is D. Data controllers must be in control of the data they hold at all times. According to the Free CIPP/E Study Guide, page 12, "the GDPR requires data controllers to implement appropriate technical and organizational measures to ensure and to be able to demonstrate that processing is performed in accordance with the GDPR. These measures should take…

Compliance with European Data Protection Law

Question

Which GDPR requirement will present the most significant challenges for organizations with Bring Your Own Device (BYOD) programs?

Options

  • AData subjects must be sufficiently informed of the purposes for which their personal data is
  • BProcessing of special categories of personal data on a large scale requires appointing a DPO.
  • CPersonal data of data subjects must always be accurate and kept up to date.
  • DData controllers must be in control of the data they hold at all times.

How the community answered

(46 responses)
  • A
    20% (9)
  • B
    7% (3)
  • C
    15% (7)
  • D
    59% (27)

Explanation

According to the Free CIPP/E Study Guide, page 12, "the GDPR requires data controllers to implement appropriate technical and organizational measures to ensure and to be able to demonstrate that processing is performed in accordance with the GDPR. These measures should take into account the nature, scope, context and purposes of processing as well as the risks of varying likelihood and severity for the rights and freedoms of natural persons." The GDPR also requires data controllers to ensure the security of personal data, to notify data breaches to the supervisory authorities and data subjects, and to cooperate with the supervisory authorities in providing any information necessary for the performance of their tasks. Therefore, the GDPR requirement that data controllers must be in control of the data they hold at all times will present the most significant challenges for organizations with BYOD programs, as they will have to deal with the increased risks of data loss, theft, unauthorized access, or misuse that may arise from the use of personal devices by employees or contractors.

Topics

#BYOD#data controller obligations#GDPR Article 5#data control

Community Discussion

No community discussion yet for this question.

Full CIPP-E Practice