Weekend Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bigdisc65

CIPP-US Reviews Questions

Page: 9 / 12
Question 36

A student has left high school and is attending a public postsecondary institution. Under what condition may a school legally disclose educational records to the parents of the student without consent?

Options:

A.

If the student has not yet turned 18 years of age

B.

If the student is in danger of academic suspension

C.

If the student is still a dependent for tax purposes

D.

If the student has applied to transfer to another institution

Question 37

In 2011, the FTC announced a settlement with Google regarding its social networking service Google Buzz. The FTC alleged that in the process of launching the service, the company did all of the following EXCEPT?

Options:

A.

Violated its own privacy policies.

B.

Engaged in deceptive trade practices.

C.

Failed to comply with Safe Harbor principles.

D.

Failed to employ sufficient security safeguards.

Question 38

Which federal law or regulation preempts state law?

Options:

A.

Health Insurance Portability and Accountability Act

B.

Controlling the Assault of Non-Solicited Pornography and Marketing Act

C.

Telemarketing Sales Rule

D.

Electronic Communications Privacy Act of 1986

Question 39

Smith Memorial Healthcare (SMH) is a hospital network headquartered in New York and operating in 7 other states. SMH uses an electronic medical record to enter and track information about its patients. Recently, SMH suffered a data breach where a third-party hacker was able to gain access to the SMH internal network.

Because it is a HIPPA-covered entity, SMH made a notification to the Office of Civil Rights at the U.S. Department of Health and Human Services about the breach.

Which statement accurately describes SMH’s notification responsibilities?

Options:

A.

If SMH is compliant with HIPAA, it will not have to make a separate notification to individuals in the state of New York.

B.

If SMH has more than 500 patients in the state of New York, it will need to make separate notifications to these patients.

C.

If SMH must make a notification in any other state in which it operates, it must also make a notification to individuals in New York.

D.

If SMH makes credit monitoring available to individuals who inquire, it will not have to make a separatenotification to individuals in the state of New York.

Page: 9 / 12
Exam Code: CIPP-US
Exam Name: Certified Information Privacy Professional/United States (CIPP/US)
Last Update: May 18, 2024
Questions: 168
CIPP-US pdf

CIPP-US PDF

$28  $80
CIPP-US Engine

CIPP-US Testing Engine

$33.25  $95
CIPP-US PDF + Engine

CIPP-US PDF + Testing Engine

$45.5  $130