IAPP
CIPP-E · Question #231
After detecting an intrusion involving the theft of unencrypted personal data, who shall the breached company notify first under GDPR requirements?
The correct answer is B. Any affected customers whose data was compromised. You've hit your limit · resets 12:50am (America/New_York)
Compliance with European Data Protection Law
Question
After detecting an intrusion involving the theft of unencrypted personal data, who shall the breached company notify first under GDPR requirements?
Options
- AAny parents of children whose personal data was compromised.
- BAny affected customers whose data was compromised.
- CA competent supervisory authority.
- DA local law enforcement agency
How the community answered
(48 responses)- A4% (2)
- B94% (45)
- D2% (1)
Explanation
You've hit your limit · resets 12:50am (America/New_York)
Topics
#data breach notification#Article 33#Article 34#supervisory authority
Community Discussion
No community discussion yet for this question.