Client GDPR and Protecting Information Quiz Play Pause Unmute MuteDo you know the GDPR laws? Is your businesses following GDPR and protecting information correctly? Answer the questions below to find out…Cyber Security - GDPR and Protecting Information Your Company Name*Name* First Last Your email address* How must data always be processed?*Electronically and in a digital formatLawfully, fairly, and in a transparent mannerWith consent from the data sellerIn a data centre to ensure availability at all timesWhich is the BEST way of securing sensitive information stored on removable devices?*Check the data on the device regularly to make sure it is completeOnly use the device once so that it won't be overused and damagedKeep the removable device wrapped in protective materialPassword protect and encrypt the data on the removable deviceUnder the GDPR, in which situation can a data controller process personal data?*When there is a legal obligation to process the dataWhen the data needs to be transferred to a third partyWhen the data processor wants to send out marketing emailsWhen the data controller is interested in processing personal dataHow should customer information be handled?*Like any other piece of informationBy encrypting it at all timesIn accordance with company rulesWith enough care not to destroy itYou have encrypted some customer data that you are going to send to another office. How should you send the password?*The email with the data should tell the other office to phone me and ask for the passwordI should text the password to the email recipient.I should send the password in a separate email to the confidential data.I should include the password in the email with the confidential data.When should you use software to lock your computer screen?*When I'm not actually typing anythingWhen it is not in useWhen it is shut down and safely storedWhen I am typing confidential informationWhat is the GDPR?*A guidance for driverless carsA data deletion softwareThe rules governing a financial transactionA data protection lawIf your personal information is stolen, you...*may forget your password.cannot change your password.may be the victim of fraud.cannot prove your identity.How should you use a USB stick securely?*Only use one that has been used several times before, as it will be safeOnly use one with a capacity that is just large enough to store the information you want to put on itOnly use an approved one that has been provided by your employerOnly use one that has been purchased from an approved supplierWhich statement about downloading security patches is correct?*It is not essential, because it is fine to wait for the next release.It is a waste of time and money, because previous versions work fine.It is essential, because it protects your personal informationIt is not effective, because your data may be stolen anyway.You are walking into a shop when you see a memory stick on the floor. What should you do?*Ignore it, because it would be stealing to pick it upFormat and run a virus scan on it before using itTake it home and use it for non-sensitive informationTake it home and use it for personal informationWhat is the main risk if you don't handle confidential information properly?*The information could be incorrect.The information could be destroyed.The information could be stolen.The information could be difficult to find.In what situation must data controllers NOT retain data?*When the data is more than 10 years oldWhen money can't be made from the data anymoreWhen the data processor has changed and has been replaced by a new processorWhen there is no legal obligation, or the data is no longer requiredWhich of these is a risk that might be caused by exposing your personal information on the internet?*My reputation could be affectedNetwork failureApplication errorsI might not be able to log inYou must exercise your right to [?], if you want to move data that you provided to a new service provider.*accessportabilityconsentdeletionWhat type of information would have a very low impact if it was leaked to criminals?*The company's internal phone bookThe names and addresses of customersThe content of marketing brochuresThe business case for a new productAn organization processing your data must ensure that your data...*is anonymized.is shared with other companies.is always processed lawfully.is always saved in the cloud and encrypted.The GDPR only applies to organizations that...*charge fees for their products or services.offer products or services into the EU.offer social networking platforms.process hardcopy personal data.Under the GDPR, what should be considered when processing personal data?*How much data can be stored on the system, and whether cloud services will be requiredWhether the data subject cares about the processing of their personal dataThe impact on the rights and freedoms of the data subjectHow long it will take to collect and process the dataWhich is an example of sensitive personal information?*My date of birthMy work addressMy job titleMy nameYou just bought a new mobile phone and put your data on it. What should you do with your old phone to protect your personal information?*I should check that I did not forget to transfer any of my personal information from it to the new phoneI should make sure that my personal information is permanently removed using a memory wipe utility or factory reset functionI should sell it on a trustworthy auction site because it will only be purchased by a trustworthy person.I should keep it stored in a safe place until the personal information on it is out of date.You want to transfer some data at work using a USB stick. What should you do?*Only use a USB stick that has been provided by the IT departmentOnly use a USB stick that I have purchased myselfOnly use a USB stick for transferring non-confidential informationOnly use a USB stick that has no other data on itUnder the GDPR, which is a right you have as a 'data subject'?*The right to move my information to the cloudThe right to sell my informationThe right to have access to my informationThe right to be paid for my informationWhat is an impact of losing a removable device containing sensitive company information?*The company will have to update the anti-virus software on all computers.The security patches on my computer will not be kept up to date.The company may be fined by a regulator for the loss of information.Criminals will be able to install malware programmes on my computer.Agreement - Your data will be retained for the anonomised purpose of statistical analysis* I agreeCommentsThis field is for validation purposes and should be left unchanged.