let's Go DeePeR

A digital illustration of a diverse group of people studying data protection and GDPR regulations on laptops and tablets. The background features a blueprint of data networks and security symbols, with a blend of professional yet approachable colors.

Deep Dive into Data Protection

Test your knowledge on GDPR with our engaging quiz! This quiz is designed for anyone wanting to deepen their understanding of data protection regulations in the EU. Whether you're a professional, a student, or simply curious, this quiz is a great way to learn!

  • 20 engaging questions
  • Assess your knowledge
  • Get immediate results
20 Questions5 MinutesCreated by LearningGuide327
Within what timeframe must organizations notify the supervisory authority of data breaches?
Within 12 hours
Within 7 working days
Within 72 hours
Within 24 hours
Consent must be explicit...
Only for children under the age of 16
For marketing communications only
For all sensitive personal data
For all personal data
The GDPR legislation applies to...
Data Processors operating in the EU
Any organization processing personal data
Data Controllers operating in the EU
All data controllers and processors established in the EU and organizations that target EU citizens
May 25th gave citizens new rights, which is correct?
Right to data access and editing
Right to be informed and withdraw consent
Right to data portability and right to be forgotten
Right to address supervisory authorities or court
A Data Protection Officer (DPO) must be appointed...
If an organization processes large scale systematic monitoring or processes large quantities of sensitive personal data
In all cases, regardless of the processing
If an organization processes personal data relating to an EU citizen
If turnover exceeds more than €25 million
What is the maximum penalty for non-compliance?
There is no maximum fine.
‚¬1,000,000,
‚¬10,000,000 or up to 4% of annual turnover, whichever is greater.
‚¬20,000,000 or up to 4% of annual turnover, whichever is greater.
What is the organization size for being concerned by GDPR?
Up to 50 employees
No matter the size
Up to 250 employees
Over 500 employees only
Within what timeframe must organizations deliver data subjects’ claim for access?
Within 90 days hours
Within 30 days
Within 24 hours
Within 72 hours
When receiving data subject's consent, it must be...
Simple and easy to receive
Implied by the subject's silence
Clear and affirmative act
Implied by the subject's inactivity
GDPR stands for...
General Data Protection Registry
General Data Protection Regulation
General Data Policy Regulation
General Data Portability Regulation
Consent is appropriately received online through
An automatic enrolment
A warning appears on the site's Terms & Conditions to which the data subject doesn't react
a pre-ticked box
A warning statement on the website that the data subject needs to approve
What does DPO stand for?
Data Police Officer
Data Protection Operator
Data Police Operator
Data Protection Officer
Which people involved in an organisation does GDPR legislation apply to?
Projects' participants and clients
Volunteers & employees
External partners and third parties
All people whose data is collected, processed and stored
For processing the data of individuals under 16 years of age
Consent must be given by the holder of parental responsibility over individual
Consent is not mandatory regarding basic information
Written consent of the individual is required
Consent must be refreshed more often
Keeping records of email addresses is under GDPR in case
It is stored for more than 30 days
The storage is permanent
The addresses are stored, even temporarily
The individual explicitely claimed it as personal data
A Data Protection Officer (DPO) must be appointed
If an organisation processes sensitive data relating to EU citizens
In case of large scale systematic monitoring or large quantities of sensitive data
Always
If turnover exceeds more than €20 million
The GDPR legislation does not apply
In the USA, regardless of the involvement of EU citizens
To data already acquired before 25.5.2018
In all data perceived as private/personal by individuals
In public services
In practice, responsible for GDPR compliance is the
Data Controller
Data Processor
Data Guardian
Data Subject
Which of the following methods for obtaining consent is unacceptable under the GDPR?
An opt-in tick box
An unsubscribe button
A written agreement
Tick box settings
Which of the following cannot be preceived as lawful basis for processing personal data?
Public task
Written agreement or contract
Personal interest
Legal obligation
{"name":"let's Go DeePeR", "url":"https://www.quiz-maker.com/QPREVIEW","txt":"Test your knowledge on GDPR with our engaging quiz! This quiz is designed for anyone wanting to deepen their understanding of data protection regulations in the EU. Whether you're a professional, a student, or simply curious, this quiz is a great way to learn!20 engaging questionsAssess your knowledgeGet immediate results","img":"https:/images/course1.png"}
Powered by: Quiz Maker