CIPP-US Exam Questions
225 real CIPP-US exam questions with expert-verified answers and explanations. Page 3 of 5.
- Question #101
One of the most significant elements of Senate Bill No. 260 relating to Internet privacy is the introduction of what term into Nevada law?
- Question #102
SCENARIO Please use the following to answer the next question: Felicia has spent much of her adult life overseas, and has just recently returned to the U.S. to help her friend Cele...
- Question #103
Your company, an online store selling digital keys to video games, has received a data access request from an individual. Specifically, the individual wants access to her recent pu...
- Question #104
Which of the following would NOT be regulated by the Illinois Biometnc Information Pnvacy Act (BIPA)?
- Question #105
SCENARIO Please use the following to answer the next question: Felicia has spent much of her adult life overseas, and has just recently returned to the U.S. to help her friend Cele...
- Question #106
What privacy concept grants a consumer the right to view and correct errors on his or her credit report?
- Question #107
A company's employee wellness portal offers an app to track exercise activity via users' mobile devices. Which of the following design techniques would most effectively inform user...
- Question #108
Under the Fair Credit Reporting Act (FCRA), what must a person who is denied employment based upon his credit history receive?
- Question #109
Which statement is FALSE regarding the provisions of the Employee Polygraph Protection Act of 1988 (EPPA)?
- Question #110
U.S. federal laws protect individuals from employment discriminaton based on all of the following EXCEPT?
- Question #111
Which statute is considered part of U.S. federal privacy law?
- Question #112
In 2012, the White House and the FTC both issued reports advocating a new approach to privacy enforcement that can best be described as what?
- Question #113
The FTC often negotiates consent decrees with companies found to be in violation of privacy principles. How does this benefit both parties involved?
- Question #114
When developing a company privacy program, which of the following relationships will most help a privacy professional develop useful guidance for the organization?
- Question #115
The Family Educational Rights and Privacy Act (FERPA) requires schools to do all of the following EXCEPT?
- Question #116
Chanel Hair Studio is a busy high-end hair salon. In an effort to maximize efficiency of its operations and reduce wait times for appointments, Chanel decides to implement artifici...
- Question #117
Which of the following laws is NOT involved in the regulation of employee background checks?
- Question #118
In 2011, the FTC announced a settlement with Google regarding its social networking service Google Buzz. The FTC alleged that in the process of launching the service, the company d...
- Question #119
A financial services company install "bossware" software on its employees' remote computers to monitor performance. The software logs screenshots, mouse movements, and keystrokes t...
- Question #120
The CFO of a pharmaceutical company is duped by a phishing email and discloses many of the company's employee personnel files to an online predator. The files include employee cont...
- Question #121
A company based in United States receives information about its UK subsidiary's employees in connection with the centralized HR service it provides. How can the UK company ensure a...
- Question #122
Which of the following state laws has an entity exemption for organizations subject to the Gramm- Leach-Bliley Act (GLBA)?
- Question #123
When designing contact tracing apps in relation to COVID-19 or any other diagnosed virus, all of the following privacy measures should be considered EXCEPT?
- Question #124
SCENARIO Please use the following to answer the next question: Jane is a U.S. citizen and a senior software engineer at California-based Jones Labs, a major software supplier to th...
- Question #125
Once a breach has been definitively established, which task should be prioritized next?
- Question #126
SCENARIO Please use the following to answer the next question: Miraculous Healthcare is a large medical practice with multiple locations in California and Nevada. Miraculous normal...
- Question #127
Which of the following conditions would NOT be sufficient to excuse an entity from providing breach notification under state law?
- Question #128
The use of cookies on a website by a service provider is generally not deemed a `sale' of personal information by CCPA, as long as which of the following conditions is met?
- Question #129
Under the Driver's Privacy Protection Act (DPPA), which of the following parties would require consent of an individual in order to obtain his or her Department of Motor Vehicle in...
- Question #130
Which of the following federal agencies does NOT have regulatory authority related to privacy?
- Question #131
Which of the following practices is NOT a key component of a data ethics framework?
- Question #132
What was unique about the action that the Federal Trade Commission took against B.J.'s Wholesale Club in 2005?
- Question #133
Mega Corp. is a U.S.-based business with employees in California, Virginia, and Colorado. Which of the following must Mega Corp. comply with in regard to its human resources data?
- Question #134
Which of the following privacy rights is NOT available under the Colorado Privacy Act?
- Question #135
SuperMart is a large Nevada-based business that has recently determined it sells what constitutes "covered information" under Nevada's privacy law, Senate Bill 260. Which of the fo...
- Question #136
Under GLBA. which of these organizations would not be required to provide its customers with an annual privacy notice?
- Question #137
The concept of data portability refers to what?
- Question #138
Which of the following is NOT a common challenge large organizations face when implementing data portability?
- Question #139
Under the EU-US Data Privacy Framework, what must participating organizations provide to individuals in regard to complaints and disputes?
- Question #140
SCENARIO Please use the following to answer the next question: Miraculous Healthcare is a large medical practice with multiple locations in California and Nevada. Miraculous normal...
- Question #141
SCENARIO Please use the following to answer the next question: Miraculous Healthcare is a large medical practice with multiple locations in California and Nevada. Miraculous normal...
- Question #142
SCENARIO Please use the following to answer the next question: Miraculous Healthcare is a large medical practice with multiple locations in California and Nevada. Miraculous normal...
- Question #143
What consumer protection did the Fair and Accurate Credit Transactions Act (FACTA) require?
- Question #144
Which of the following would best provide a sufficient consumer disclosure under the Fair Credit Reporting Act (FCRA) prior to a consumer report being obtained for employment purpo...
- Question #145
SCENARIO Please use the following to answer the next question: Jane is a U.S. citizen and a senior software engineer at California-based Jones Labs, a major software supplier to th...
- Question #146
SCENARIO Please use the following to answer the next question: Jane is a U.S. citizen and a senior software engineer at California-based Jones Labs, a major software supplier to th...
- Question #147
According to the Family Educational Rights and Privacy Act (FERPA). when can a school disclose records without a student's consent?
- Question #148
A software company wants to use web scraping to collect personal data from professional networking websites in order to train an artificial intelligence program to evaluate Job app...
- Question #149
Due to cookie deprecation, businesses will be required to simplify their tracking practices by doing what?
- Question #150
The Clarifying Lawful Overseas Use of Data (CLOUD) Act is primarily intended to do which of the following?