Security Flashcards

1
Q

Before each processing activities takes place, a xxx must be carried out.

It is not based on the xxx to the company, but it focuses on the xxx of the data subject.

There is not a xxx for carrying out xxx but it should be xxx for xxx purposes.

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Important things to point out in the risk assment:
- general information about the xxx
- probability of a xxx to occur
- impact on the xxx xxx
- xxx/yyy measures to protect …

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

2 types of security measures against … examples

Possible risks for data subject

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

DPIA is more … and … than risk assessment.

The purpose is to evalute the … of high …

3 Examples of activities

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Art 32 Security of processing.

Taking into account 3 elements x y z the controller shall implement …

Including 4 examples: … of data, ability to ensure the … of data, ability to … data in a …. manner, processes for … … and …. of security measures.

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are data breaches? -> Accidental or unlawful …, …, …, … to personal data.

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Art 33 Obligation to notify the DPA:
- within undue delay, no later than 72hours after becoming aware of it.
- no only if it is unlikely to … and the controller must be … to …. it

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Art 34 Obligation to notify the data subject:
- only if the breach is likely to… if not the controller should be able to …
- when? (no 72h)
- how? nature of the breach, reccomendations to mitigate the impact.

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly