click below
click below
Normal Size Small Size show me how
Cyber Priv FA1
| Question | Answer |
|---|---|
| Which of the following is a benefit of harmonizing cybersecurity laws internationally? | Facilitating trade and ensuring consistent protection |
| Which of the following defines “cybercrime”? | Illegal activities conducted via computers or the internet |
| Which country’s law is considered a global benchmark for data protection? | EU’s GDPR |
| A government requires telecoms to retain communication data only for legally defined periods. This complies with retention limits. | True |
| Which event led to stricter international privacy frameworks in the 2000s? | Increasing frequency of cyberattacks |
| Which principle requires organizations to demonstrate compliance with data protection laws? | Accountability |
| Which international agency promotes cybersecurity in the EU? | ENISA |
| Which regulation requires strong security measures in healthcare institutions? | HIPAA |
| Which is a historical driver for privacy law? | Expansion of the internet and online threats |
| Which principle supports deleting personal data after consent is withdrawn? | Right to be forgotten |
| Which of the following is an example of a sector-specific privacy law? | HIPAA |
| Which are possible consequences of data breaches? | Financial penalties Loss of consumer trust Legal liability |
| Which are safeguards for cross-border data transfers under GDPR? | Adequacy decisions Standard Contractual Clauses Binding Corporate Rules |
| A government agency requires explicit consent before collecting fingerprints. This complies with privacy law. | True |
| A bank notifies customers of a breach within 72 hours. This complies with GDPR. | True |
| A cloud storage provider retains backups indefinitely without justification. This complies with retention policies. | False |
| Which practices comply with data protection principles? | Implementing retention limits Obtaining informed consent Encrypting sensitive data |
| An e-commerce store fails to notify affected customers after a breach. This complies with breach notification laws. | False |
| Which framework by NIST improves cybersecurity for critical infrastructure? | Cybersecurity Framework |
| Which are examples of sector-specific regulations? | HIPAA GLBA |
| Which are elements of the CIA Triad? | Availability Integrity Confidentiality |
| A retail shop collects customer emails and uses them for unrelated political ads. This complies with data minimization. | False |
| A data breach occurs when: | Confidential or protected data is accessed without authorization |
| What does “consent” mean in privacy law? | Individual permission before data collection or processing |
| Which country introduced the “Right to be Forgotten”? | European Union |
| Which are key purposes of cybersecurity law? | Protecting digital infrastructures Preventing cyberattacks Safeguarding national security |
| Which are global privacy frameworks? | GDPR APEC Privacy Framework |
| A company publishes anonymized statistics without identifiers. This generally complies with privacy law. | True |
| What is the primary goal of encryption in privacy law compliance? | To prevent unauthorized access to sensitive data |
| Privacy laws primarily regulate: | Collection, processing, and sharing of personal data |