CIPP-E Exam QuestionsBrowse all questions from this exam

CIPP-E Exam - Question 33


When hiring a data processor, which action would a data controller NOT be able to depend upon to avoid liability in the event of a security breach?

Show Answer
Correct Answer: C

A data controller cannot avoid liability by requiring the processor to directly notify the appropriate supervisory authority. Under data protection regulations like the GDPR, it is ultimately the responsibility of the data controller to manage and report security breaches to the appropriate authorities. Assigning this duty to the data processor does not absolve the controller from responsibility.

Discussion

3 comments
Sign in to comment
jhjhhhhOption: C
Jul 24, 2023

i think it is C

b399b45Option: C
Mar 1, 2024

Also agree that it should be C. the responsibility of notifying the Supervisory authority should be the controller, not the processor.

loejeeOption: C
Oct 28, 2023

Also agree that it should be C. the responsibility of notifying the Supervisory authority should be the controller, not the processor.