Isaca
CDPSE
218
Certified Data Privacy Solutions Engineer
A: Read-only access
B: Least privilege
C: Segregation of duties
D: Data minimization
A: Require an annual internal audit of SDLC processes.
B: Include qualified application security personnel as part of the process.
C: Ensure comprehensive application security testing immediately prior to release.
D: Require an annual third-party audit of new client software solutions.
A: Seek approval from all in-scope data controllers.
B: Obtain assurance that data subject requests will continue to be handled appropriately
C: Implement comparable industry-standard data encryption in the new data warehouse
D: Ensure data retention periods are documented
A: The application only stores data locally.
B: The application shares personal information upon request.
C: The application only stores data for 24 hours.
D: The application requires consent before sharing locations.