ASSESSMENTS REVIEWED EXAM
QUESTIONS AND THEIR CORRECT
ANSWERS
What two major things do Privacy Impact
Assessments do?
Assesses privacy risk and applicable laws, regulations and
policies at every part of the data lifecycle.
Recommends steps to mitigate risk.
What is a Privacy Impact Assessment?
An evaluation performed to verify that a new or existing
organizational process adheres to all appropriate privacy
laws, regulations and policies
Name some events that might trigger a Privacy Impact
Assessment.
Creation of a new product or service
A new or updated program for processing data
A merger or acquisition
Creation of a new data center
Onboarding of new data
Movement of data to a different country
Changes in regulations governing data use
(bonus for WA!) if data collected involves minors, genetic
information, health information, citizenship/immigration
status, race/ethnicity, religious/philosophical belief, sex or