C Certs Club
Home
Oracle SAP Microsoft Cisco CompTIA Fortinet Salesforce Nutanix Linux Foundation Amazon View All Vendors →
Login Register

IAPP CIPM - IAPP Certified Information Privacy Manager (CIPM) Certification Exam

Download Exam View Entire Exam
Page: 1 / 2
Question #1 (Topic: Demo Questions)

SCENARIO
Please use the following to answer the next QUESTION:
Manasa is a product manager at Omnipresent Omnimedia, where she is responsible for leading the
development of the company's flagship product, the Handy Helper. The Handy Helper is an
application that can be used in the home to manage family calendars, do online shopping, and
schedule doctor appointments. After having had a successful launch in the United States, the Handy
Helperis about to be made available for purchase worldwide.
The packaging and user guide for the Handy Helper indicate that it is a "privacy friendly" product
suitable for the whole family, including children, but does not provide any further detail or privacy
notice. In order to use the application, a family creates a single account, and the primary user has
access to all information about the other users. Upon start up, the primary user must check a box
consenting to receive marketing emails from Omnipresent Omnimedia and selected marketing
partners in order to be able to use the application.
Sanjay, the head of privacy at Omnipresent Omnimedia, was working on an agreement with a
European distributor of Handy Helper when he fielded many Questions about the product from the
distributor. Sanjay needed to look more closely at the product in order to be able to answer the
Questions as he was not involved in the product development process.
In speaking with the product team, he learned that the Handy Helper collected and stored all of a
user's sensitive medical information for the medical appointment scheduler. In fact, all of the user's
information is stored by Handy Helper for the additional purpose of creating additional products and to analyze usage of the product. This data is all stored in the cloud and is encrypted both during
transmission and at rest.
Consistent with the CEO's philosophy that great new product ideas can come from anyone, all
Omnipresent Omnimedia employees have access to user data under a program called Eurek
a. Omnipresent Omnimedia is hoping that at some point in the future, the data will reveal insights
that could be used to create a fully automated application that runs on artificial intelligence, but as
of yet, Eureka is not well-defined and is considered a long-term goal.
What step in the system development process did Manasa skip?


A.
Obtain express written consent from users of the Handy Helper regarding marketing.
B.
Work with Sanjay to review any necessary privacy requirements to be built into the product.
C.
Certify that the Handy Helper meets the requirements of the EU-US Privacy Shield Framework.
D.
Build the artificial intelligence feature so that users would not have to input sensitive information into the Handy Helper. 
Correct Answer: B
Explanation not available for this question.
Question #2 (Topic: Demo Questions)

What have experts identified as an important trend in privacy program development? 

A.
The narrowing of regulatory definitions of personal information
B.
The rollback of ambitious programs due to budgetary restraints. 
C.
The movement beyond crisis management to proactive prevention.
D.
 The stabilization of programs as the pace of new legal mandates slows.
Correct Answer: C
Explanation not available for this question.
Question #3 (Topic: Demo Questions)

In addition to regulatory requirements and business practices, what important factors must a global privacy strategy consider? 

A.
Monetary exchange.
B.
Geographic features.
C.
Political history. 
D.
Cultural norms.
Correct Answer: D
Explanation not available for this question.
Question #4 (Topic: Demo Questions)

What are you doing if you succumb to "overgeneralization" when analyzing data from metrics? 

A.
Using data that is too broad to capture specific meanings.
B.
Possessing too many types of data to perform a valid analysis. 
C.
Using limited data in an attempt to support broad conclusions.
D.
Trying to use several measurements to gauge one aspect of a program.
Correct Answer: C
Explanation not available for this question.
Question #5 (Topic: Demo Questions)

When supporting the business and data privacy program expanding into a new jurisdiction, it is important to do all of the following EXCEPT?

A.
Identify the stakeholders.
B.
Appoint a new Privacy Officer (PO) for that jurisdiction.
C.
Perform an assessment of the laws applicable in that new jurisdiction.
D.
Consider culture and whether the privacy framework will need to account for changes in culture.
Next Question
Correct Answer: B
Explanation not available for this question.