Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Exin Exam PDPF Topic 7 Question 58 Discussion

Actual exam question for Exin's PDPF exam
Question #: 58
Topic #: 7
[All PDPF Questions]

Which cause is a data breach according to the GDPR?

Show Suggested Answer Hide Answer
Suggested Answer: C

Controller: Correct. The controller determines the purpose and means of the processing. (Literature: A, Chapter 1; GDPR Article 4(7))

Processor: Incorrect. The controller determines the purpose of the processing, the processor works on the controller's instructions.

Supervisory authority: Incorrect. The supervisory authority monitors and enforces compliance with the GDPR requirements.

Third party: Incorrect. A third party has no role in determining the purpose of the processing. Any party that determines the purpose would become a new controller.


Contribute your Thoughts:

Sonia
19 days ago
I'm stumped. Maybe I should've paid more attention in my GDPR training instead of browsing memes...
upvoted 0 times
...
Sabra
20 days ago
D, for sure. That vulnerable server is just asking for trouble. GDPR is all about security, am I right?
upvoted 0 times
Blondell
2 days ago
A) illegally obtained corporate data from a human resources management system
upvoted 0 times
...
...
Buddy
26 days ago
Haha, the correct answer is definitely not A - I wouldn't want to be the one who illegally obtained that HR data!
upvoted 0 times
Sueann
4 days ago
C) Personal data is processed by anyone other than the controller, processor or, possibly, subprocessor
upvoted 0 times
...
Sabra
19 days ago
A) illegally obtained corporate data from a human resources management system
upvoted 0 times
...
...
William
2 months ago
I believe another cause could be personal data being processed by anyone other than the controller, processor, or subprocessor. That could also lead to a breach.
upvoted 0 times
...
Daren
2 months ago
Option C seems the most relevant to me. The GDPR is all about ensuring the right people have access to personal data.
upvoted 0 times
Daniel
25 days ago
I agree, it's important to control who has access to personal data.
upvoted 0 times
...
Caprice
30 days ago
Option C seems the most relevant to me.
upvoted 0 times
...
...
Carmen
2 months ago
I think option B is the correct answer. Processing personal data without a contract is a clear violation of the GDPR.
upvoted 0 times
...
Patria
2 months ago
I agree with Gilbert. Personal data being processed without a binding contract can definitely lead to a data breach.
upvoted 0 times
...
Gilbert
2 months ago
I think the cause of a data breach according to the GDPR is personal data being processed without a binding contract.
upvoted 0 times
...

Save Cancel