HACKER SAFEにより証明されたサイトは、99.9%以上のハッカー犯罪を防ぎます。
カート(0

IAPP CIPP-A 問題集

CIPP-A

試験コード:CIPP-A

試験名称:Certified Information Privacy Professional/Asia (CIPP/A)

最近更新時間:2024-04-09

問題と解答:全92問

CIPP-A 無料でデモをダウンロード:

PDF版 Demo ソフト版 Demo オンライン版 Demo

追加した商品:"PDF版"
価格: ¥6599 

無料問題集CIPP-A 資格取得

質問 1:
SCENARIO - Please use the following to answer the next QUESTION:
Dracarys Inc. is a large multinational company with headquarters in Seattle, Washington, U.S.A.
Dracarys began as a small company making and selling women's clothing, but rapidly grew through its early innovative use of online platforms to sell its products. Dracarys is now one of the biggest names in the industry, and employs staff across the globe, and in Asia has employees located in both Singapore and Hong Kong.
Due to recent management restructuring they have decided, on the advice of external consultants, to open an office in India in order to centralize its call center as well as its internal human resource functions for the Asia region. Dracarys would like to centralize the following human resource functions in India:
1. The recruitment process;
2. Employee assessment and records management;
3. Employee benefits administration, including health insurance.
Dracarys will have employees on the ground in India managing the systems for the functions listed above. They have been presented with a variety of vendor options for these systems, and are currently assessing the suitability of these vendors for their needs.
The CEO of Dracarys is concerned about the behavior of her employees, especially online. After having proprietary company information being shared with competitors by former employees, she is eager to put certain measures in place to ensure that the activities of her employees, while on Dracarys' premises or when using any of Dracarys' computers and networks are not detrimental to the business.
Dracarys' external consultants are also advising the company on how to increase earnings. Dracary's management refuses to reduce production costs and compromise the quality of their garments, so the consultants suggested utilizing customer data to create targeted advertising and thus increase sales.
Which of the following guidelines does Dracarys NOT need to take into account when implementing monitoring and surveillance tools?
A. The Indian Information Technology Act of 2000.
B. The Hong Kong Code of Practice on Human Resource Management.
C. The Hong Kong guide to monitoring personal data privacy at work.
D. The Singapore advisory guidelines on the personal data protection act for selected topics (employment and CCTV).
正解:A

質問 2:
SCENARIO - Please use the following to answer the next QUESTION:
Zoe is the new Compliance Manager for the Star Hotel Group, which has five hotels across Hong Kong and Chin a. On her first day, she does an inspection of the largest property, StarOne. She starts with the hotel reception desk. Zoe sees the front desk assistant logging in to a database as he is checking in a guest. The hotel manager, Bernard, tells her that all guest data, including passport numbers, credit card numbers, home address, mobile number and other information associated with a guest's stay is held in a database. Bernard tells her not to worry about the security of the database because it is operated for Star Hotels by a local service provider called HackProof, who therefore are responsible for all the guest data.
Zoe notices what looks like a CCTV camera in the corner of the reception area. Bernard says they record all activity in the lobby. In fact, last Tuesday he had received a data access request from a lawyer requesting a copy of footage of all lobby activity for the preceding month. The lawyer's covering letter said that his client has never visited the hotel herself, but is investigating whether her husband has been doing so without her knowledge.
Zoe and Bernard head up to the hotel spa. The spa is independently owned by a company called Relax Ltd. Bernard explains that Relax Ltd is a small company and, as they don't have their own database, they transfer data about the spa guests to StarOne staff so that they can upload the data into the HackProof system. Relax Ltd staff can then login and review their guest data as needed.
Zoe asks more about the HackProof system. Bernard tells her that the server for the Hong Kong hotels is in Hong Kong, but there is a server in Shenzhen that has a copy of all the Hong Kong hotel data and supports the properties in China. The data is in China for back up purposes and also is accessible by staff in the China hotels so they can better service guests who visit their hotels in both territories.
Members of Relax Ltd's staff are concerned about the data sharing with StarOne. How should Zoe respond to their concerns?
A. Inform the staff that Relax Ltd should not transfer the data to StarOne without a privacy notice identifying StarOne as a class of transferee.
B. Inform the staff that Relax Ltd should not transfer the data to StarOne without the guest's opt-in consent to do so.
C. Inform the staff that Relax Ltd can transfer the data to StarOne given they are in the same premises and guests would reasonably expect that.
D. Inform the staff that Relax Ltd can transfer the data as Section 33 is not in force.
正解:B

質問 3:
In Hong Kong, which of the following are exempt from personal data access requests until after the project to which the data is related has been concluded?
A. Financial institutions.
B. Non-profit groups.
C. Hospital administrators.
D. News organizations.
正解:D

質問 4:
In Singapore, a potential employer can collect all of the following data on an individual in the pre-employment phase EXCEPT?
A. Information about the individual's children.
B. The individual's university attendance records.
C. Information from a background check.
D. Postings from social media websites.
正解:C

質問 5:
How can the privacy principles issued in 1980 by the Organisation for Economic Cooperation and Development (OECD) be defined?
A. Guidelines governing the protection of privacy and trans-border data flows of personal data in states that are members.
B. Mandatory rules governing the protection of privacy and trans-border data flows within the European Union.
C. Mandatory rules governing the protection of privacy and trans-border data flows among binding member states.
D. Guidelines governing the protection of privacy and trans-border data flows issued in collaboration with the Federal Trade Commission.
正解:A

質問 6:
SCENARIO - Please use the following to answer the next QUESTION:
Dracarys Inc. is a large multinational company with headquarters in Seattle, Washington, U.S.A.
Dracarys began as a small company making and selling women's clothing, but rapidly grew through its early innovative use of online platforms to sell its products. Dracarys is now one of the biggest names in the industry, and employs staff across the globe, and in Asia has employees located in both Singapore and Hong Kong.
Due to recent management restructuring they have decided, on the advice of external consultants, to open an office in India in order to centralize its call center as well as its internal human resource functions for the Asia region. Dracarys would like to centralize the following human resource functions in India:
1. The recruitment process;
2. Employee assessment and records management;
3. Employee benefits administration, including health insurance.
Dracarys will have employees on the ground in India managing the systems for the functions listed above. They have been presented with a variety of vendor options for these systems, and are currently assessing the suitability of these vendors for their needs.
The CEO of Dracarys is concerned about the behavior of her employees, especially online. After having proprietary company information being shared with competitors by former employees, she is eager to put certain measures in place to ensure that the activities of her employees, while on Dracarys' premises or when using any of Dracarys' computers and networks are not detrimental to the business.
Dracarys' external consultants are also advising the company on how to increase earnings. Dracary's management refuses to reduce production costs and compromise the quality of their garments, so the consultants suggested utilizing customer data to create targeted advertising and thus increase sales.
What must Dracarys confirm about the vendor in India in order to centralize elements of its Human Resource function?
A. That the vendor adheres to the same sector privacy rules followed by Dracarys headquarters based in Seattle regarding the transfer of personal data.
B. That the vendor submits for approval from Dracarys a privacy notice explaining how personal data will be protected under the Indian Information Technology Act.
C. That the vendor files requests for transfer of personal data out of India through the offices of the privacy commissioners of Hong Kong and Singapore.
D. That the vendor is bound by legally enforceable obligations to provide the personal data a standard of protection that is at least comparable to the protection under the Singapore PDPA.
正解:B

質問 7:
All of the following are guidelines the PDPC gives about anonymised data EXCEPT?
A. Anonymised data is not personal data.
B. Organizations should consider the risk of re-identification if it intends to publish or disclose anonymised data.
C. Data that has been anonymised satisfies the "cease to retain" requirement of Section 25.
D. Any data that has been anonymised bears the same risks for re-identification.
正解:C
解説: (Topexam メンバーにのみ表示されます)

質問 8:
How was the Supreme Court's ruling in the Maneka Gandhi v Union of India case significant to Indian law?
A. It upheld that the impounding of passports for "public interest" is allowable under Section 10(3)(c) of the Passports Act.
B. It established that privacy is a fundamental right granted by the Constitution under Article 21.
C. It expanded the interpretation of right to life under Article 21 of the Constitution.
D. It ruled that under Article 32 of the Constitution individuals may file writ petitions when they feel their rights
正解:D
解説: (Topexam メンバーにのみ表示されます)

弊社は失敗したら全額で返金することを承諾します

我々は弊社のCIPP-A問題集に自信を持っていますから、試験に失敗したら返金する承諾をします。我々のIAPP CIPP-Aを利用して君は試験に合格できると信じています。もし試験に失敗したら、我々は君の支払ったお金を君に全額で返して、君の試験の失敗する経済損失を減少します。

弊社のIAPP CIPP-Aを利用すれば試験に合格できます

弊社のIAPP CIPP-Aは専門家たちが長年の経験を通して最新のシラバスに従って研究し出した勉強資料です。弊社はCIPP-A問題集の質問と答えが間違いないのを保証いたします。

CIPP-A無料ダウンロード

この問題集は過去のデータから分析して作成されて、カバー率が高くて、受験者としてのあなたを助けて時間とお金を節約して試験に合格する通過率を高めます。我々の問題集は的中率が高くて、100%の合格率を保証します。我々の高質量のIAPP CIPP-Aを利用すれば、君は一回で試験に合格できます。

安全的な支払方式を利用しています

Credit Cardは今まで全世界の一番安全の支払方式です。少数の手続きの費用かかる必要がありますとはいえ、保障があります。お客様の利益を保障するために、弊社のCIPP-A問題集は全部Credit Cardで支払われることができます。

領収書について:社名入りの領収書が必要な場合、メールで社名に記入していただき送信してください。弊社はPDF版の領収書を提供いたします。

TopExamは君にCIPP-Aの問題集を提供して、あなたの試験への復習にヘルプを提供して、君に難しい専門知識を楽に勉強させます。TopExamは君の試験への合格を期待しています。

一年間の無料更新サービスを提供します

君が弊社のIAPP CIPP-Aをご購入になってから、我々の承諾する一年間の更新サービスが無料で得られています。弊社の専門家たちは毎日更新状態を検査していますから、この一年間、更新されたら、弊社は更新されたIAPP CIPP-Aをお客様のメールアドレスにお送りいたします。だから、お客様はいつもタイムリーに更新の通知を受けることができます。我々は購入した一年間でお客様がずっと最新版のIAPP CIPP-Aを持っていることを保証します。

弊社は無料IAPP CIPP-Aサンプルを提供します

お客様は問題集を購入する時、問題集の質量を心配するかもしれませんが、我々はこのことを解決するために、お客様に無料CIPP-Aサンプルを提供いたします。そうすると、お客様は購入する前にサンプルをダウンロードしてやってみることができます。君はこのCIPP-A問題集は自分に適するかどうか判断して購入を決めることができます。

CIPP-A試験ツール:あなたの訓練に便利をもたらすために、あなたは自分のペースによって複数のパソコンで設置できます。

IAPP Certified Information Privacy Professional/Asia (CIPP/A) 認定 CIPP-A 試験問題:

1. Besides the Personal Data Protection Act (PDPA), which of the following is a potential source of privacy protection for Singapore citizens?

A) The tort of invasion of privacy.
B) Constitutional protections of personal information.
C) Breach of confidence law.
D) International agreements protecting privacy.


2. In India, the obligation to appoint a Grievance Officer applies ONLY to companies that?

A) Deal with sensitive personal data.
B) Conduct cross-border data transfers.
C) Are considered part of the public sector.
D) Lack alternate enforcement mechanisms.


3. In the area of human rights, what separates Singapore from many other Asian countries?

A) It has not adopted the ASEAN Human Rights Declaration.
B) It is not a member of the United Nations.
C) It is not a member of the Association of Southeast Asian Nations (ASEAN).
D) It has not signed the International Covenant on Civil and Political Rights.


4. SCENARIO - Please use the following to answer the next QUESTION:
Zoe is the new Compliance Manager for the Star Hotel Group, which has five hotels across Hong Kong and Chin a. On her first day, she does an inspection of the largest property, StarOne. She starts with the hotel reception desk. Zoe sees the front desk assistant logging in to a database as he is checking in a guest. The hotel manager, Bernard, tells her that all guest data, including passport numbers, credit card numbers, home address, mobile number and other information associated with a guest's stay is held in a database. Bernard tells her not to worry about the security of the database because it is operated for Star Hotels by a local service provider called HackProof, who therefore are responsible for all the guest data.
Zoe notices what looks like a CCTV camera in the corner of the reception area. Bernard says they record all activity in the lobby. In fact, last Tuesday he had received a data access request from a lawyer requesting a copy of footage of all lobby activity for the preceding month. The lawyer's covering letter said that his client has never visited the hotel herself, but is investigating whether her husband has been doing so without her knowledge.
Zoe and Bernard head up to the hotel spa. The spa is independently owned by a company called Relax Ltd. Bernard explains that Relax Ltd is a small company and, as they don't have their own database, they transfer data about the spa guests to StarOne staff so that they can upload the data into the HackProof system. Relax Ltd staff can then login and review their guest data as needed.
Zoe asks more about the HackProof system. Bernard tells her that the server for the Hong Kong hotels is in Hong Kong, but there is a server in Shenzhen that has a copy of all the Hong Kong hotel data and supports the properties in China. The data is in China for back up purposes and also is accessible by staff in the China hotels so they can better service guests who visit their hotels in both territories.
HackProof reports to Zoe that a copy of the entire guest database has been exfiltrated by a hacker. What is Zoe's best course of action?

A) Zoe must report the breach to the Privacy Commissioner and make an action plan together with the Commissioner.
B) Zoe must immediately notify all guests, the police and the Privacy Commissioner of the breach.
C) Zoe does not need to do anything as there is no mandatory breach notification requirement in Hong Kong.
D) Zoe should consider if there is a real risk of harm to the guests and take appropriate action based on her assessment.


5. In India's IT Rules 2011, which is included in the definition of "sensitive personal data"?

A) IP addresses.
B) Tax records.
C) Next of kin.
D) Sexual Orientation.


質問と回答:

質問 # 1
正解: B
質問 # 2
正解: A
質問 # 3
正解: D
質問 # 4
正解: D
質問 # 5
正解: D

CIPP-A 関連試験
CIPP-E-Deutsch - Certified Information Privacy Professional/Europe (CIPP/E) (CIPP-E Deutsch Version)
CIPP-US - Certified Information Privacy Professional/United States (CIPP/US)
CIPP-E - Certified Information Privacy Professional/Europe (CIPP/E)
CIPP-C - Certified Information Privacy Professional/ Canada (CIPP/C)
連絡方法  
 [email protected] サポート

試用版をダウンロード

人気のベンダー
Adobe
Apple
Avaya
CheckPoint
Citrix
CIW
CompTIA
EC-COUNCIL
EXIN
FileMaker
IBM
Juniper
Lotus
Lpi
Network Appliance
OMG
Oracle
PMI
SNIA
Symantec
VMware
XML Master
Zend-Technologies
The Open Group
H3C
F5
3COM
BEA
Dell
ACI
すべてのベンダー
TopExam問題集を選ぶ理由は何でしょうか?
 品質保証TopExamは我々の専門家たちの努力によって、過去の試験のデータが分析されて、数年以来の研究を通して開発されて、多年の研究への整理で、的中率が高くて99%の通過率を保証することができます。
 一年間の無料アップデートTopExamは弊社の商品をご購入になったお客様に一年間の無料更新サービスを提供することができ、行き届いたアフターサービスを提供します。弊社は毎日更新の情況を検査していて、もし商品が更新されたら、お客様に最新版をお送りいたします。お客様はその一年でずっと最新版を持っているのを保証します。
 全額返金弊社の商品に自信を持っているから、失敗したら全額で返金することを保証します。弊社の商品でお客様は試験に合格できると信じていますとはいえ、不幸で試験に失敗する場合には、弊社はお客様の支払ったお金を全額で返金するのを承諾します。(全額返金)
 ご購入の前の試用TopExamは無料なサンプルを提供します。弊社の商品に疑問を持っているなら、無料サンプルを体験することができます。このサンプルの利用を通して、お客様は弊社の商品に自信を持って、安心で試験を準備することができます。