CIPP\C exam Flashcards

1
Q

Along with the Senate, what is the other Canadian Federal Parliamentary Chamber?

A

House of Commons

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following is a responsibility of the Canadian Federal Government?

A

Banking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Along with transparency, what other major issue was cited by the Privacy Commissioner of Canada report about the Facebook complaint filled by the Canadian Internet Policy and Public Interest clinic?

A

Consent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which Provincial health law has been deemed substantially similar to the Personal Information and Electronic Documents Act (PIPEDA)?

A

Ontario’s Personal Health Information Protection Act (PHIPA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the Primary purpose of the Info Source?

A

To assist individuals in exercising their rights under the Access to Information Act and the Privacy Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

In 2010, which organization’s social networking tool prompted the privacy commissioner of Canada to call on the company to be more accountable for the personal information it controlled.

A

Google

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which of the following is guaranteed by the Section 7 of the Canadian Charter of Rights and Freedoms?

A

Life, Liberty and Security of the person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which statement about the application of consent principles in Canada is NOT true?

A

The Personal Information Protection and Electronic Documents Act is the only Canadian Law that explicitly deals with the requirement for consent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What factor determines the extent of privacy impact assessment (PIAs) conducted by government institutions in compliance with the Directive on Privacy Impact Assessment?

A

The level of risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which is NOT a risk factor that government officials must evaluate when framing an outsourcing contract that involves personal or sensitive information?

A

The number of data elements involved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

In Canadian Provinces that do not have a privacy commissioner, which office is responsibel for oversight of privacy?

A

Ombudsperson

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which is a remedy the Office of the Privacy Commissioner of Canada has after investigating complaints about violations of the Privacy Act?

A

Recommend solutions to government institutions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which organization published the “model code for the Protection of Personal Information” in 1996?

A

Canadian Standards Association

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which Canadian Institution issued a policy requiring that each federal government institution establish measures to ensure that the government institution “ meets the requirements of the Privacy Act when contracting with private-sector organizations, or when establishing agreements or arrangements with public-sector organizations”?

A

The treasury Board of Canada

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which of the following is NOT a term that refers to a health sector participant, such as hospitals, nursing homes or pharmacies?

A

Provider ( correct terms are custodian, trustee, Health Information custodian)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Under the Privacy Act, nonconsensual disclosure of personal information is permitted in all of the following EXCEPT:

A

For the purpose of assisting the individual in resolving a problem by a member of provincial government

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which is NOT a valid reason for denying a Canadian Citizen access to personal information held by a government institution?

A

A member of parliament requests that the information not be disclosed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

In the context of Canadian Health laws, one common theme with respect to consent is that it must be:

A

Meaningful

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which is NOT a main category into which Canadian jurist have classified privacy as it relates to privacy protection?

A

Communications privacy

20
Q

Which Act bars organizations from requiring individuals to undergo a genetic test or disclose the results of a genetic test as a condition of providing goods or services or entering into a contract in Canada?

A

The Genetic Non-Discrimination Act

21
Q

Section 4 of the regulations to the Privacy Act requires government institutions to retain personal information for at least how long following the last time is was used?

A

2 years

22
Q

Which principle is almost single-handedly responsible for the recent proliferation of privacy notices?

A

Openness

23
Q

Which of the following demonstrates the importance of the Personal Information Protection and Electronics Documents Act (PIPEDA) in the case between the Privacy Commissioner of Canada and the Society of Worldwide Interbank Financial Telecommunication (SWIFT)

A

Just because an organization operates in 2 or more jurisdictions does not alleviate its obligations to comply with Canadian Law

24
Q

Barring an authorized extension, how long do Canadian government institutions have to grant access after an individual request?

A

30 days

25
Q

Based on the Privacy Act, which is NOT an example of personal information?

A

The salary range of a government official

26
Q

In the TJX winners- Homesense case, to which data element collected by the company did the federal and Alberta privacy commissioners object?

A

Driver’s license number

27
Q

Which Canadian jurisdiction does NOT make information regarding how to obtain access to or request correction of personal health information available to public?

A

British Columbia

28
Q

To which entities does the Personal Information Protection and Electronic Documents Act (PIPEDA) apply?

A

Any Canadian private-sector organization that discloses, uses or collects personal information for commercial purposes

29
Q

Which province has laws that apply to employee personal information

A

Alberta

30
Q

Aside from implied consent, which of the following requires consent under Canada’s Anti-Spam Legislation (CASL)

A

A text message that offers a discount on pizza delivereies

31
Q

Canada Political Structure

A

Parliament - house of commons
Federal-provincial and municipal - legislative
Executive - Prime minister/ cabinet

32
Q

Common law

A

All provinces except Quebec

33
Q

Civil Law

A

Used only in Quebec instead of common law

34
Q

Which legal model of data protection does Canada follow?

A

Canada+EU - Comprehensive Laws to ensure consistency with pan-European laws (GDPR)

35
Q

What is the difference between privacy policy and a privacy notice/

A

privacy policy is a set of guidelines for handling, storing and managing PI
privacy notice - description of organization information of management policies

36
Q

To whom is the federal commissioner accountable?

A

OPC - Parliament

37
Q

Which province uses civil law instead of common law

A

Quebec -civil code

38
Q

Which act restricts government collection of PI even when is publicly available?

A

privacy act

39
Q

What are the 3 basic obligations organizations must fulfil under PIPEDA?

A

Reasonableness
Consent
Access

40
Q

CASL only applies to CEM which originate in canada?

A

False. CEM sent to recipients in Canada from outside must comply with CASL

41
Q

PIPEDA only applies to Canadian Citizen? PIPEDA only applies to Canadian organizations?

A

False - Entire Canada

False- In Canada

42
Q

De novo means

A

From the start

43
Q

What was significant about the decision the supreme court made in the blood tribe case?

A

Solicitor client privilege is an important legal right

44
Q

What are some of the tools used by Privacy Commissioner to provide guidance on privacy rights and obligation?

A

Blogs
Websites
Annual Reports
Guidelines

45
Q

Privacy Act specifies an obligation to properly safeguard and retain PI

A

False

46
Q

Due to concerns about USA Patriot Act, the Privacy Act prohibits the transfer of PI to the USA?

A

False

47
Q

Which provincial health law hs been deemed substantially similar to PIPEDA?

A

HIA -+AB health information Act