Scenario 3:COR Bank is an international banking group that operates in 31 countries. It was formed as the merger of two well-known investment banks in Germany. Their two main fields of business are retail and investment banking. COR Bank provides innovative solutions for services such as payments, cash management, savings, protection insurance, and real-estate services. COR Bank has a large number of clients and transactions. Therefore, they process large information, including clients' personal dat
Answer(s): C
Under Article 3(2) of GDPR, GDPR applies extraterritorially if an entity outside the EU processes personal data of EU residents on behalf of a controller subject to GDPR. Tibko processes COR Bank's client data, making it subject to GDPR as a processor under Article 28.Option C is correct because Tibko must comply with GDPR since it processes EU data on behalf of COR Bank.Option A is incorrect because processors must comply with broader GDPR obligations, not just technical safeguards.Option B is incorrect because processors do not determine the purpose of processing; that is the controller's responsibility.Option D is incorrect because location outside the EU does not exempt processors from GDPR obligations.
GDPR Article 3(2) (Territorial Scope)GDPR Article 28(1) (Processor obligations)Recital 81 (Processor responsibilities)
Answer(s): A
Under Article 37(6) of GDPR, the DPO can be an employee of the company or an external contractor. Lisa's appointment complies with GDPR because she is a staff member with data protection expertise.Option A is correct because GDPR allows organizations to appoint an internal or external DPO.Option B is incorrect because a DPO does not have to be an internal staff member even for special categories of data.Option C is incorrect because a company can appoint an internal DPO even if it operates internationally.Option D is incorrect because having another role does not disqualify someone from being a DPO, as long as there is no conflict of interest.
GDPR Article 37(6) (DPO may be an employee or external contractor)Recital 97 (DPO qualifications and independence)
Answer(s): B
Under Article 39(1)(b) of GDPR, the DPO's role is advisory--they monitor compliance but do not actively implement policies.Option B is correct because DPOs advise and monitor but do not execute policy updates.Option A is incorrect because DPOs do more than just propose changes; they ensure compliance.Option C is incorrect because implementation is the responsibility of the controller, not the DPO.Option D is incorrect because DPOs do not handle general security responsibilities.
GDPR Article 39(1)(b) (DPO's monitoring role)Recital 97 (DPO's independence and advisory function)
Under Article 4(8) of GDPR, a data processor processes personal data on behalf of a controller and does not determine the purpose of processing. Tibko only stores and manages data but does not decide why it is processed.Option B is correct because Tibko acts as a processor for COR Bank.Option A is incorrect because Tibko does not determine data processing purposes.Option C is incorrect because joint controllers must jointly decide on processing purposes.Option D is incorrect because Tibko does not act as an independent controller.
GDPR Article 4(8) (Definition of a processor)GDPR Article 28 (Processor obligations)
Under Article 38(3) of GDPR, the DPO must operate independently, without receiving instructions regarding the execution of their tasks. A DPO should not be pressured or influenced by the organization when assessing data protection compliance.Option C is correct because GDPR explicitly states that DPOs must act independently.Option A is incorrect because no department heads should interfere with the DPO's decisions.Option B is incorrect because DPOs should not take orders on GDPR matters.Option D is incorrect because DPOs must not be influenced by management, even if they provide general compliance guidance.
GDPR Article 38(3) (DPO independence)Recital 97 (DPO's autonomy and protection from pressure)
Share your comments for PECB GDPR exam with other users:
Question 2:For Question 2, the correct concept is C) Machine Learning (ML).
Question 4:You're right to flag that. The key concept is this:
Question 18:Answer: ODBC (option B) Explanation:
ODBC
Microsoft SQL Server
OLE DB
OData
Get Data
Question 366:Question 366 asks how to apply an Application Security Group (ASG1) to VM1. The key concept is that an ASG is attached to network interfaces, not directly to a VM.
Question 1:Correct answer: Redeploy VM1 and VM2 to the same availability set. Why:
Question 1:Here’s a targeted explanation of Question 1.
%windir%\setup\scripts
SetupComplete.cmd
%WINDIR%\Setup\Scripts\
powershell.exe -NoProfile -ExecutionPolicy Bypass -File YourScript.ps1
Question 1:The correct answer is C. Why: In few-shot prompting, the value comes from high-quality, representative demonstrations. The examples should be diverse and typical of what the model will see in production, so the model learns the true input–label mapping and generalizes to unseen emails. Why the other options are less appropriate:
AWESOME and Thanku
Question 24:Question 24 asks which three actions are needed to set up intercompany accounting between two legal entities. The three correct actions are:
Question 1:The correct answer is Enabling team.
Question 1:
Question 1:The best solution is A: Configure a SetupComplete.cmd batch file in the %windir%\setup\scripts directory. Why this is correct:
Question 9:Question 9 asks about how GitHub Copilot identifies public code matches when the public code filter is on.
Question 2:I can’t view the exhibit image, but this is the typical NetApp ONTAP behavior for Question 2.
Question 23:Question 23 describes a multimodal model where users can upload unsafe images that could contain hidden instructions. The goal is to implement controls to mitigate this risk. Key points to understand
beautiful exams
You need to implement the date dimension in the data store. The solution must meet the technical requirements. What are two ways to achieve the goal? Each correct answer presents a complete solution. NOTE: Each correct selection is worth one point. Populate the date dimension table by using a dataflow. Populate the date dimension table by using a Copy activity in a pipeline. Populate the date dimension view by using T-SQL. Populate the date dimension table by using a Stored procedure activity in a pipeline.Please answer
Question 14:
Question 5:Question 5 asks how to identify min and max values for each column in a Dataflow result. Correct options: B and E.
Question 18:Question 18: Why not A?
Question 4:Question 4 is about when to use batch processing.
Question 5:I can’t see the [Image] in Question 5, but I can explain the likely reasoning.
Question 12:Here’s why Question 12’s correct choices are C and D.
Question 3:Question 3 asks for two valid ways to meet the purchase order creation validation (warn if the vendor is on the exclusion list for the customer/product and block/alert accordingly). Correct answers: C and D
Question 12:Here’s how to understand question 12.
Question 6:Here’s how question 6 works. Key constraint: All new and extended objects must be in an existing model named FinanceExt. Creating a brand-new model is not allowed. Why the two correct options work:
Question 2:I don’t have the text for Question 2 here. Please paste the exact Question 2 (including all answer choices) or describe the topic it covers. Once I have it, I’ll:
Which statement is true about using default environment variables? The environment variables can be read in workflows using the ENV: variable_name syntax. The environment variables created should be prefixed with GITHUB_ to ensure they can be accessed in workflows The environment variables can be set in the defaults: sections of the workflow The GITHUB_WORKSPACE environment variable should be used to access files from within the runner.Correct answer: The statement "The GITHUB_WORKSPACE environment variable should be used to access files from within the runner." is true. Why the others are false:
${{ env.VARIABLE }}
$VARIABLE
GITHUB_
defaults:
run
GITHUB_WORKSPACE
${{ github.workspace }}
$GITHUB_WORKSPACE/...
${{ github.workspace }}/...
As an administrator for this subscription, you have been tasked with recommending a solution that prohibits users from copying corporate information from managed applications installed on unmanaged devices. Which of the following should you recommend? Windows Virtual Desktop. Microsoft Intune. Windows AutoPilot. Azure AD Application Proxy.
Question 34:
Policy
function of appnav in sdwan
Question 5:
Why this is correct
Keeping this site free takes real effort. We constantly battle automated scraping and unauthorized content copying. A quick account helps us protect the community and keep the site free.
To continue studying for your GDPR, please sign in or create a free account.