Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISACA logo

Certified Data Privacy Solutions Engineer

Domain 2Objective 2

Privacy-Focused Assessment (Privacy Impact Assessment) CDPSE Practice Questions (Page 3)

Part of the Privacy Risk Management and Compliance domain, which accounts for 18% of the CDPSE exam.

34questions here
7free pages
9concepts
18%of the exam

Questions 11–15

  1. 11application · medium

    An e-commerce company is conducting a PIA for a new recommendation engine. During data flow mapping, the team discovers that the engine will receive customer browsing history from the website, purchase history from the order database, and demographic data from a third-party data broker. The team is unsure if the data broker data is necessary for the recommendations. What is the most appropriate action during the PIA?

    Select an answer first
  2. 12application · medium

    A government agency is conducting a PIA for a new benefits eligibility system. The project team has completed the scoping phase and is now mapping the data flows. They have identified that the system will collect applicant financial data from a third-party database and share eligibility decisions with a separate enforcement division. What is the next step in the PIA process after the data flow mapping is complete?

    Select an answer first
  3. 13expert · hard

    A large hospital network is conducting a PIA for a new patient data analytics platform. The platform will combine data from the EHR, wearable devices, and social determinants of health (e.g., zip code, income level) to predict patient readmission risks. The PIA team has identified a high risk of re-identification when combining these datasets. The clinical research department wants to use the platform to publish findings. The legal department is concerned about compliance with health data regulations. What is the most appropriate course of action?

    Select an answer first
  4. 14foundation · easy

    Which of the following is an example of a legal privacy risk?

    Select an answer first
  5. 15expert · hard

    A city government is conducting a PIA for a new smart parking system that will use license plate recognition cameras to manage parking spaces. The system will collect license plate data and link it to payment information. The privacy team has identified a risk that the data could be used for surveillance beyond parking management. The police department has requested access to the data for law enforcement purposes. What is the most appropriate way to address this in the PIA?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CDPSE” is a trademark of its owner, used for identification only.