Exam CIPM All QuestionsBrowse all questions from this exam
Question 9

An organization's privacy officer was just notified by the benefits manager that she accidentally sent out the retirement enrollment report of all employees to a wrong vendor.

Which of the following actions should the privacy officer take first?

    Correct Answer: C

    The privacy officer should first contact the recipient to delete the email. The immediate priority is to mitigate any potential harm by containing the breach and ensuring that no further unauthorized access to the sensitive information occurs.

Discussion
giomikeOption: C

The answer is C: The privacy officer should work with the benefits manager to contain the breach promptly. This may involve contacting the vendor and requesting them to delete or secure the data immediately.

CockOption: C

I vote for c

Gh789Option: C

C - data encryption is not clarified, the immediate action should be containment

emily0922Option: C

Should be C, to secure operations and make sure no additional data is lost first

JuttOption: A

It should be A to determine the harm first.

BevMeOption: C

The first priority in such situations is to mitigate any potential harm by containing the breach.

humhainOption: A

Risk Analysis