Quiz Summary
0 of 24 Questions completed
Questions:
Information
You have already completed the quiz before. Hence you can not start it again.
Quiz is loading…
You must sign in or sign up to start the quiz.
You must first complete the following:
Results
Results
0 of 24 Questions answered correctly
Your time:
Time has elapsed
You have reached 0 of 0 point(s), (0)
Earned Point(s): 0 of 0, (0)
0 Essay(s) Pending (Possible Point(s): 0)
Average score |
|
Your score |
|
Categories
- Not categorized 0%
- 1
- 2
- 3
- 4
- 5
- 6
- 7
- 8
- 9
- 10
- 11
- 12
- 13
- 14
- 15
- 16
- 17
- 18
- 19
- 20
- 21
- 22
- 23
- 24
- Current
- Review
- Answered
- Correct
- Incorrect
-
Question 1 of 24
1. Question
1 point(s)The GDPR is a future proof directive that must be abided by each EU member state and by any organisation that trades within the EU or with EU data. (Select true or false.)
CorrectIncorrect -
Question 2 of 24
2. Question
1 point(s)In the UK, which one of the following regulations is replaced by the GDPR?
CorrectIncorrect -
Question 3 of 24
3. Question
1 point(s)The data controller says how and why personal data is processed and the data processor acts on the controller’s behalf. (Select true or false.)
CorrectIncorrect -
Question 4 of 24
4. Question
1 point(s)Which of the following are reasons for implementing the GDPR? (You may select more than one answer.)
CorrectIncorrect -
Question 5 of 24
5. Question
1 point(s)Under the GDPR, an organisation must have an individual’s ‘explicit consent before they can use their personal data. (Select true or false.)
CorrectIncorrect -
Question 6 of 24
6. Question
1 point(s)Which one of the following assessments is a process which assists organisations to identify and minimise privacy risks in new data system projects?
CorrectIncorrect -
Question 7 of 24
7. Question
1 point(s)Organisations can appoint a Data Protection Officer (DPO) even when the GDPR doesn’t oblige them to do so. (Select true or false.)
CorrectIncorrect -
Question 8 of 24
8. Question
1 point(s)In the event of a personal data breach which of the following information must be provided to the ICO?
CorrectIncorrect -
Question 9 of 24
9. Question
1 point(s)The Information Commissioner’s Office (ICO) must be informed of a personal data breach with how many hours? (Select one answer.)
CorrectIncorrect -
Question 10 of 24
10. Question
1 point(s)Under the GDPR’s two tier fine system, if a data breach occurs that puts what authorities deem to be highly important data at risk. The data controller or processor will be subject to a tier one fine up to: (Select one answer)
CorrectIncorrect -
Question 11 of 24
11. Question
1 point(s)Under the GDPR’s two tier fine system, if a data breach occurs that puts what authorities deem to be less important data at risk. The data controller or processor will be subject to a tier two fine up to: (Select one answer)
CorrectIncorrect -
Question 12 of 24
12. Question
1 point(s)Following privacy by design principles helps to identify potential privacy issues at an early and less costly stage in the design and development process. (Select true or false.)
CorrectIncorrect -
Question 13 of 24
13. Question
1 point(s)Which three of the following are individuals rights under the GDPR.
CorrectIncorrect -
Question 14 of 24
14. Question
1 point(s)The GDPR requires that information provided by an organisation to individuals about the processing of personal data should be: (Select one answer.)
CorrectIncorrect -
Question 15 of 24
15. Question
1 point(s)The GDPR stipulates that information must be provided without delay and at the latest within three months of receipt of the request. (Select true or false.)
CorrectIncorrect -
Question 16 of 24
16. Question
1 point(s)Read the following sentences about the Right of Access and select the ones that you think are true and which are false.
CorrectIncorrect -
Question 17 of 24
17. Question
1 point(s)The right to erasure provides and absolute right for individuals to be forgotten. (Select true or false.)
CorrectIncorrect -
Question 18 of 24
18. Question
1 point(s)Which one of the following is a machine readable digital file format that can be used to implement data portability?
CorrectIncorrect -
Question 19 of 24
19. Question
1 point(s)The processing of personal data for direct marketing purposes must stop within 48 hours from when the organisation receives an objection.
CorrectIncorrect -
Question 20 of 24
20. Question
1 point(s)An organisation must deal with an objection to processing for direct marketing at any time and free of charge.
CorrectIncorrect -
Question 21 of 24
21. Question
1 point(s)Individuals must be informed of their right to object ‘at the point of first communication’ and in the organisation’s privacy notice.
CorrectIncorrect -
Question 22 of 24
22. Question
1 point(s)This must be ‘explicitly brought to the attention of individuals within 30 days and shall be presented clearly and separately from any other information.
CorrectIncorrect -
Question 23 of 24
23. Question
1 point(s)Where an organisation’s processing operation includes automatic decision making, individuals have the right not to be subject to a decision when: (Select one answer.)
CorrectIncorrect -
Question 24 of 24
24. Question
1 point(s)If an individual is under __ years of age, an organisation must have the ‘explicit consent’ of their parent or legal guardian before they can use their personal data. (Select the correct age.)
CorrectIncorrect