Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Isaca CDPSE Practice Exam with Questions & Answers | Set: 5

Questions 41

Which of the following is a responsibility of the audit function in helping an organization address privacy compliance requirements?

Options:
A.

Approving privacy impact assessments (PIAs)

B.

Validating the privacy framework

C.

Managing privacy notices provided to customers

D.

Establishing employee privacy rights and consent

Isaca CDPSE Premium Access
Questions 42

An organization plans to implement a new cloud-based human resources (HR) solution with a mobile application interface. Which of the following is the BEST control to prevent data leakage?

Options:
A.

Download of data to the mobile devices is disabled.

B.

Single sign-on is enabled for the mobile application.

C.

Data stored in the cloud-based solution is encrypted.

D.

Separate credentials are used for the mobile application.

Questions 43

Which of the following is the PRIMARY reason to use public key infrastructure (PRI) for protection against a man-in-the-middle attack?

Options:
A.

It uses Transport Layer Security (TLS).

B.

It provides a secure connection on an insecure network

C.

It makes public key cryptography feasible.

D.

It contains schemes for revoking keys.

Questions 44

An organization is considering the use of remote employee monitoring software. Which of the following is the MOST important privacy consideration when implementing this solution?

Options:
A.

Data should be used to improve employee performance.

B.

Data should be retained per the organization's retention policy

C.

Data access should be restricted based on roles.

D.

Data analysis should be used to set staffing levels

Questions 45

An IT privacy practitioner wants to test an application in pre-production that will be processing sensitive personal data. Which of the following testing methods is

BEST used to identity and review the application's runtime modules?

Options:
A.

Static application security testing (SAST)

B.

Dynamic application security testing (DAST)

C.

Regression testing

D.

Software composition analysis

Questions 46

Which of the following is the MOST important attribute of a privacy policy?

  • Breach notification period
Options:
A.

Data retention period

B.

Transparency

C.

Language localization

Questions 47

Which of the following is the PRIMARY reason that organizations need to map the data flows of personal data?

Options:
A.

To assess privacy risks

B.

To evaluate effectiveness of data controls

C.

To determine data integration gaps

D.

To comply with regulations

Questions 48

Which of the following should be considered personal information?

Options:
A.

Biometric records

B.

Company address

C.

University affiliation

D.

Age

Questions 49

Which of the following is the MOST important consideration for determining the operational life of an encryption key?

Options:
A.

Number of entities involved in communication

B.

Number of digitally signed documents in force

C.

Volume and sensitivity of data protected

D.

Length of key and complexity of algorithm

Questions 50

Which of the following should be done FIRST when performing a data quality assessment?

Options:
A.

Identify the data owner.

B.

Define data quality rules.

C.

Establish business thresholds-

D.

Assess completeness of the data inventory.

Exam Code: CDPSE
Certification Provider: Isaca
Exam Name: Certified Data Privacy Solutions Engineer
Last Update: Jul 17, 2025
Questions: 218

Isaca Free Exams

Isaca Free Exams
Examstrack offers comprehensive free resources and practice tests for Isaca exams.