nerdexam
IAPP

CIPP-E · Question #231

After detecting an intrusion involving the theft of unencrypted personal data, who shall the breached company notify first under GDPR requirements?

The correct answer is B. Any affected customers whose data was compromised. You've hit your limit · resets 12:50am (America/New_York)

Compliance with European Data Protection Law

Question

After detecting an intrusion involving the theft of unencrypted personal data, who shall the breached company notify first under GDPR requirements?

Options

  • AAny parents of children whose personal data was compromised.
  • BAny affected customers whose data was compromised.
  • CA competent supervisory authority.
  • DA local law enforcement agency

How the community answered

(48 responses)
  • A
    4% (2)
  • B
    94% (45)
  • D
    2% (1)

Explanation

You've hit your limit · resets 12:50am (America/New_York)

Topics

#data breach notification#Article 33#Article 34#supervisory authority

Community Discussion

No community discussion yet for this question.

Full CIPP-E Practice