1.
What is the essence of the principle 'Full Lifecycle Protection'?
2.
For processing of personal data to be legal, a number of requirements must be fulfilled. What is a requirement for lawful personal data processing?
3.
Under what EU legislation is data transfer between the EEA and the U.S.A. allowed?
4.
According to the GDPR, for which situations should a Data Protection impact Assessment (DPIA) be conducted?
5.
Important technical requirements set out in the General Data Protection Regulation (GDPR) are about data quality. One is the obligation to ensure appropriate security, including protection against unauthorized or unlawful processing. What is another important technical requirement?
6.
According to the GDPR, what is a mandatory topic in a DPIA report?
7.
The GDPR states that records of processing activities must be kept by the controller. To whom must the controller make these records available, if requested?
8.
Which situation is considered a data breach according to the GDPR?
9.
According to the GDPR, what is the main reason to consider data protection in the initial design phase?
10.
A personal data breach has occurred and the controller is writing a draft notification for the Supervisory Authority. The document describes the nature of the breach and its possible consequences. It also contains information on the parties that can provide additional information on the data breach to the Supervisory Authority. What other information should the controller add?