Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

IAPP Exam CIPP-E Topic 8 Question 85 Discussion

Actual exam question for IAPP's CIPP-E exam
Question #: 85
Topic #: 8
[All CIPP-E Questions]

A company plans to transfer employee health information between two of its entities in France. To maintain the security of the processing, what would be the most important security measure to apply to the health data transmission?

Show Suggested Answer Hide Answer
Suggested Answer: A

According to the EDPB Guidelines 05/2020 on consent under Regulation 2016/6791, valid consent for the use of cookies must meet the following conditions:

* It must be freely given, which means that the data subject must have a genuine choice and the ability to refuse or withdraw consent without detriment.

* It must be specific, which means that the data subject must give consent for each distinct purpose of the processing and for each type of cookie.

* It must be informed, which means that the data subject must receive clear and comprehensive information about the identity of the controller, the purposes of the processing, the types of cookies used, the duration of the cookies, and the possibility of withdrawing consent.

* It must be unambiguous, which means that the data subject must express their consent by a clear affirmative action, such as clicking on an ''I agree'' button or selecting specific settings in a cookie banner.

* It must be granular, which means that the data subject must be able to consent to different types of cookies separately, such as essential, functional, performance, or marketing cookies.

Therefore, a ''Cookies Settings'' button is not a necessary element to collect valid consent for the use of cookies, as long as the data subject can exercise their choice and preference through other means, such as a cookie banner with different options. However, a ''Cookies Settings'' button may be a good practice to enhance transparency and user control, as it allows the data subject to access and modify their consent settings at any time.

On the other hand, a ''Reject All'' cookies button is a necessary element to collect valid consent for the use of cookies, as it ensures that the data subject can freely refuse consent without detriment. A list of cookies that may be placed and information on the purpose of the cookies are also necessary elements to collect valid consent for the use of cookies, as they ensure that the data subject is informed and can give specific consent for each type of cookie.


Contribute your Thoughts:

Carlota
11 days ago
Conduct a data protection impact assessment? What is this, a security quiz for rocket scientists? Encrypt the data, and call it a day!
upvoted 0 times
...
Theresia
12 days ago
Haha, informing the data subject is like telling a bank robber where the gold is buried. Encryption is the way to go, my friends!
upvoted 0 times
Benedict
2 days ago
B: I agree, informing the data subject could pose a security risk.
upvoted 0 times
...
Jess
4 days ago
A: Encryption is definitely the best way to protect the health data.
upvoted 0 times
...
...
Ona
17 days ago
A data processing agreement is important, but encryption is the real deal-breaker here. Gotta keep that data locked down tight!
upvoted 0 times
...
Mila
19 days ago
I'd go with option C. Encrypting the data both in transit and at rest is crucial to maintaining the security and privacy of the health information.
upvoted 0 times
...
Sherron
23 days ago
I also believe that conducting a data protection impact assessment would be crucial to identify and mitigate any potential risks.
upvoted 0 times
...
Leigha
25 days ago
I agree with Adelaide, encrypting the data would ensure the security of the health information during transmission.
upvoted 0 times
...
Malcolm
25 days ago
Encrypt the data, of course! That's the most important thing to protect sensitive health information. Anything less and it's like leaving the front door wide open.
upvoted 0 times
...
Adelaide
1 months ago
I think the most important security measure would be to encrypt the transferred data in transit and at rest.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77
a