Weekend Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

CDPSE Exam Dumps - Isaca Certification Questions and Answers

Question # 44

When data processing is performed at a third-party data center, ownership of the risk PRIMARILY rests with the:

Options:

A.

Data custodian

B.

Data scientist

C.

Data processor

D.

Data controller

Buy Now
Question # 45

Which of the following would BEST support an organization in fulfilling data subject rights?

Options:

A.

Data loss prevention (DLP) solution

B.

Documented and tested data breach handling process

C.

Contact form on the organization’s website

D.

Current and accurate data map

Buy Now
Question # 46

Which of the following needs to be identified FIRST to define the privacy requirements to use when assessing the selection of IT systems?

    Type of data being processed

Options:

A.

Applicable privacy legislation

B.

Applicable control frameworks

C.

Available technology platforms

Buy Now
Question # 47

An online retail company is trying to determine how to handle users’ data if they unsubscribe from marketing emails generated from the website. Which of the following is the BEST approach for handling personal data that has been restricted?

Options:

A.

Encrypt users’ information so it is inaccessible to the marketing department.

B.

Reference the privacy policy to see if the data is truly restricted.

C.

Remove users’ information and account from the system.

D.

Flag users’ email addresses to make sure they do not receive promotional information.

Buy Now
Question # 48

Which of the following is the MOST important consideration when writing an organization’s privacy policy?

Options:

A.

Using a standardized business taxonomy

B.

Aligning statements to organizational practices

C.

Ensuring acknowledgment by the organization’s employees

D.

Including a development plan for personal data handling

Buy Now
Question # 49

An organization is creating a personal data processing register to document actions taken with personal data. Which of the following categories should document controls relating to periods of retention for personal data?

Options:

A.

Data archiving

B.

Data storage

C.

Data acquisition

D.

Data input

Buy Now
Question # 50

What is the PRIMARY means by which an organization communicates customer rights as it relates to the use of their personal information?

Options:

A.

Gaining consent when information is collected

B.

Publishing a privacy notice

C.

Mailing rights documentation to customers

D.

Distributing a privacy rights policy

Buy Now
Question # 51

To ensure effective management of an organization’s data privacy policy, senior leadership MUST define:

Options:

A.

training and testing requirements for employees handling personal data.

B.

roles and responsibilities of the person with oversights.

C.

metrics and outcomes recommended by external agencies.

D.

the scope and responsibilities of the data owner.

Buy Now
Question # 52

Which of the following is the best way to reduce the risk of compromised credentials when an organization allows employees to have remote access?

Options:

A.

Enable whole disk encryption on remote devices.

B.

Purchase an endpoint detection and response (EDR) tool.

C.

Implement multi-factor authentication.

D.

Deploy single sign-on with complex password requirements.

Buy Now
Question # 53

Which of the following principles is MOST important to apply when granting access to an enterprise resource planning (ERP) system that contains a significant amount of personal data?

Options:

A.

Read-only access

B.

Least privilege

C.

Segregation of duties

D.

Data minimization

Buy Now
Exam Code: CDPSE
Exam Name: Certified Data Privacy Solutions Engineer
Last Update: Oct 12, 2025
Questions: 247
CDPSE pdf

CDPSE PDF

$25.5  $84.99
CDPSE Engine

CDPSE Testing Engine

$28.5  $94.99
CDPSE PDF + Engine

CDPSE PDF + Testing Engine

$40.5  $134.99