GDPR 2018 Flashcards

1
Q

What does GDPR stand for?

A

General Data Protection Regulation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

True or False: GDPR applies only to organizations within the European Union.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the primary purpose of GDPR?

A

To protect the privacy and personal data of individuals within the EU.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Fill in the blank: GDPR came into effect on _______.

A

May 25, 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which of the following is a key principle of GDPR? (a) Data Minimization (b) Data Maximization

A

a) Data Minimization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What rights do individuals have under GDPR?

A

Rights include access, rectification, erasure, restriction of processing, data portability, and the right to object.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

True or False: Organizations must appoint a Data Protection Officer (DPO) under GDPR.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is ‘personal data’ as defined by GDPR?

A

Any information relating to an identified or identifiable natural person.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the maximum fine for non-compliance with GDPR?

A

Up to €20 million or 4% of global annual turnover, whichever is higher.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the ‘Right to be Forgotten’?

A

The right of individuals to have their personal data erased under certain conditions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Fill in the blank: GDPR requires organizations to report data breaches within _______ hours.

A

72

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which of the following is NOT considered personal data? (a) Name (b) Company name

A

b) Company name

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is ‘data portability’ under GDPR?

A

The right of individuals to obtain and reuse their personal data across different services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

True or False: Consent under GDPR must be explicit and informed.

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What does ‘privacy by design’ mean in the context of GDPR?

A

Incorporating data protection measures from the start of any project or system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a Data Processing Agreement (DPA)?

A

A contract between a data controller and a data processor that outlines the processing of personal data.

17
Q

Fill in the blank: GDPR applies to _______ data processors and controllers.

18
Q

What does ‘legitimate interest’ mean in GDPR?

A

A lawful basis for processing personal data where the processing is necessary for the legitimate interests of the data controller.

19
Q

Which authority oversees the enforcement of GDPR?

A

Data Protection Authorities (DPAs) in each EU member state.

20
Q

True or False: GDPR allows for the transfer of personal data outside the EU.

21
Q

What is ‘profiling’ in the context of GDPR?

A

Any form of automated processing of personal data to evaluate certain personal aspects of an individual.

22
Q

Fill in the blank: GDPR was designed to replace the _______ directive.

A

Data Protection

23
Q

What is the significance of ‘Article 30’ in GDPR?

A

It requires organizations to maintain a record of processing activities.

24
Q

What does the term ‘data breach’ mean?

A

A security incident that results in unauthorized access to personal data.

25
True or False: GDPR applies to both automated and manual processing of personal data.
True
26
What are the consequences of non-compliance with GDPR?
Fines, legal action, and damage to reputation.