CIPM Exam QuestionsBrowse all questions from this exam

CIPM Exam - Question 9


An organization's privacy officer was just notified by the benefits manager that she accidentally sent out the retirement enrollment report of all employees to a wrong vendor.

Which of the following actions should the privacy officer take first?

Show Answer
Correct Answer: A,C

The privacy officer should first contact the recipient to delete the email. The immediate priority is to mitigate any potential harm by containing the breach and ensuring that no further unauthorized access to the sensitive information occurs.

Discussion

7 comments
Sign in to comment
giomikeOption: C
Jan 23, 2024

The answer is C: The privacy officer should work with the benefits manager to contain the breach promptly. This may involve contacting the vendor and requesting them to delete or secure the data immediately.

emily0922Option: C
Aug 13, 2023

Should be C, to secure operations and make sure no additional data is lost first

Gh789Option: C
Aug 15, 2023

C - data encryption is not clarified, the immediate action should be containment

CockOption: C
Oct 13, 2023

I vote for c

humhainOption: A
Feb 23, 2024

Risk Analysis

BevMeOption: C
May 28, 2024

The first priority in such situations is to mitigate any potential harm by containing the breach.

JuttOption: A
Jul 3, 2024

It should be A to determine the harm first.