All About Statutes
The Nitty Gritty
What's the Concept?
Apply The Facts
Fake Jeopardy: True / False
100

The framework for fair and responsible handling of personal data in the EU

What is the GDPR? 

100

This is the reason some categories of data are classified as belonging to special categories under the GDPR. 

What is because improper use of these types of data can have a more significantly negative impact on individuals. 

100

This topic is concerned with how others collect, use, share and protect personal information.

What is data protection? 

100

Browsing history, job title, screen names, and geolocation data can be examples of this. 

What is personal data / information?

100

Data processing only refers to an organization that is actively using personal data. 

What is false?

200

The acronym of the EU Regulation stands for? 

What is the General Data Protection Regulation? 

200

Which component of the CCPA Personal Information definition expands the standard definition? 

What is a household?

200

Data collection, usage, storing, sharing, archiving and destruction are the components of this concept. 

What is the data lifecycle? 

200

This is how organizations and websites often comply with transparency requirements under data protection regimes.

What is a privacy policy or privacy notice?

200

The CCPA only applies to for-profit businesses meeting certain criteria.

What is true?

300

Only if this happens, then the CCPA provides for a private right of action. 

What is a data breach?

300

Which of the following are classified as "special categories" of data under the GDPR?

a) email address, b) ethnic origin, c) mobile number, d) full name, e) health data, f) religious beliefs, g) biometric data

What are: b) ethnic origin, e) health data, f) religious beliefs, and g) biometric data

300

The rule that data should be destroyed once it is no longer needed describes this concept.

What is data minimization?

300

A California college student visiting the emergency room and filling out her paperwork in Arizona would be considered a ________ under the CCPA. 

What is a consumer?

300

The GDPR applies to trade secrets. 

What is false.

400

The CCPA applies to you if.... 

What is a for-profit business that has either: 1) $25M in annual revenue globally; 2) holds the personal information (PI) of 50K people, households or devices; or 3) makes at least half of its revenue from the sale of PI.

400

Under the CCPA as it stands today, employers must still meet this obligation with respect to a job applicant before or at the point of collecting their resume. 

What is notice? 

400

Allowing customers to update their personal information on the company website is an example of which privacy principle? 

What is access?

400

Neville provided Corporation with his personal data when purchasing a widget from them. Corporation uses E-Marketer to provide customers with notices about new products. Corporation sends Neville's information to E-Marketer.

Under the GDPR, what is Corporation's designation w/r/t to the personal data? 

What is a data controller?

400

A data breach includes an organization accidentally deleting personal data.

What is true?

500

This is who the GDPR applies to. 

What are organizations that a) are established in the E.U., b) offer goods or services to individuals in the EU, or c) monitor the behaviors of individuals in the EU

500

The passage of the CPRA extended both the B2B and this other exemption from the definition of personal information for purposes of certain CCPA requirements and if certain conditions are met. 

What are employees, job applicants and owners.

500

These are the principles that are widely recognized as forming the basis for all data protection practices. 

What are transparency, consent, data minimization, purpose limitation, access and security? 

500

Which of the following would be considered sensitive personal information generally: 

a) birthdates, b) fingerprints, c) bank account information, d) medical diagnoses, e) full name, f) street addresses, g) paternity test

What are b) fingerprints, d) medical diagnoses, and g) paternity tests?

500

Personal information publicly available on a LinkedIn profile would still be considered personal information. 

What is true? 

M
e
n
u