CIPP-E Exam QuestionsBrowse all questions from this exam

CIPP-E Exam - Question 66


Under Article 30 of the GDPR, controllers are required to keep records of all of the following EXCEPT?

Show Answer
Correct Answer: AD

Article 30 of the GDPR requires controllers to maintain records of processing activities, which include details such as categories of recipients to whom the data has been disclosed and retention periods for erasure and deletion of categories of personal data. However, incidents of personal data breaches are not included under Article 30. Instead, these breaches are covered under Article 33, which deals with the notification of personal data breaches.

Discussion

4 comments
Sign in to comment
mlgrjcOption: B
Mar 25, 2023

The correct answer is B

58ad832
May 2, 2024

The answer is A. B is incorrect because data mapping is an organizational security measure which falls under Article 30 (1) g. description of the organizational security measures.

Claire0911Option: A
Oct 7, 2023

The correct answer is A. Art. 30 is about ROPA, while documenting data breach is in Art. 33 under security of personal data.

EgofskamOption: A
Aug 9, 2023

Correct answer is A - reporting requirements are addressed in Article 33, not 30 which deals with records of processing

zero46Option: A
Dec 19, 2023

Not in ROPA