Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Exin Exam PDPF Topic 6 Question 71 Discussion

Actual exam question for Exin's PDPF exam
Question #: 71
Topic #: 6
[All PDPF Questions]

Which of the following options is provided for in the GDPR and can be made by Member States?

Show Suggested Answer Hide Answer
Suggested Answer: C

Implement technical and organizational measures to ensure compliance. Incorrect. This is the task of the controller.

Investigate security breaches of corporate information. Incorrect. Only breaches of personal data are a concern of the supervisory authority.

Monitor and enforce the application of the GDPR. Correct. This is the main task of any supervisory authority. (Literature: A, Chapter 7)


Contribute your Thoughts:

Glen
15 days ago
I'm with Linwood on this one. Auditing security processes is where it's at. Although, a good old-fashioned penalty doesn't sound too bad either. Decisions, decisions...
upvoted 0 times
...
Aretha
25 days ago
Option A all the way! Gotta love those national provisions, am I right? GDPR is all about flexibility, baby!
upvoted 0 times
Alpha
15 days ago
I agree, national provisions give Member States the flexibility they need.
upvoted 0 times
...
...
Teri
1 months ago
Hmm, I don't know. I'm stuck between B and D. The GDPR does mention something about forcing data breach notifications, but the penalty power also seems like a big deal. Maybe I'll just guess and hope for the best.
upvoted 0 times
Reena
15 days ago
I think B is the correct answer. It's important for controllers to notify data subjects of breaches.
upvoted 0 times
...
...
Linwood
2 months ago
Come on, guys. It's clearly option C. The GDPR empowers authorities to audit the security measures of controllers and processors. That's a no-brainer.
upvoted 0 times
Cary
12 days ago
I agree with you, it's definitely option C. Authorities can audit controller and processor safety processes.
upvoted 0 times
...
Adolph
1 months ago
I think it's option A. Member States can approve national provisions for the implementation of GDPR.
upvoted 0 times
...
...
Mertie
2 months ago
I'm not so sure about that. I think option D might be the right answer - the GDPR gives member states the power to penalize controllers and processors for non-compliance.
upvoted 0 times
...
Lizette
2 months ago
But I believe D) Penalize controllers and processors is also important for enforcement.
upvoted 0 times
...
Jennie
2 months ago
I agree with Ardella, Member States can have their own provisions to implement GDPR.
upvoted 0 times
...
Nguyet
2 months ago
Option A seems like the obvious choice here. The GDPR allows member states to provide their own implementation guidelines, so that's gotta be it.
upvoted 0 times
Adelle
20 days ago
That's true, they can also penalize controllers and processors for non-compliance.
upvoted 0 times
...
Kathryn
24 days ago
D) Penalize controllers and processors.
upvoted 0 times
...
Allene
28 days ago
I think you're right, member states can definitely provide their own guidelines.
upvoted 0 times
...
Garry
1 months ago
A) Approve national provisions for implementation of GDPR.
upvoted 0 times
...
...
Ardella
2 months ago
I think A) Approve national provisions for implementation of GDPR is allowed by Member States.
upvoted 0 times
...

Save Cancel