โ† All CDPSE Flashcard Decks

By Design Principles Flashcards

7 cards from real CDPSE practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 By Design Principles flashcards as text
  1. In the context of Security by Design, which practice ensures that a compromised component cannot escalate access to other system parts?

    Answer: Least Privilege

    Least Privilege limits each component or user to only the permissions required, containing damage if that component is compromised.

  2. A privacy engineer is designing a recommendation engine and proposes using aggregated cohort data instead of individual profiles. Which Privacy by Design technique does this represent?

    Answer: Data Anonymization by Aggregation

    Anonymization by aggregation groups individuals into cohorts so individual profiles are never created or exposed, reducing re-identification risk.

  3. Which Privacy by Design principle is most directly supported by implementing automatic data retention and deletion schedules?

    Answer: Full Lifecycle Protection

    Full Lifecycle Protection covers the entire data journey including secure destruction, so automated deletion schedules directly fulfill this principle.

  4. An engineer recommends that a new payment system fail to a locked-out state rather than an open state if authentication fails. This is an example of which security principle aligned with Privacy by Design?

    Answer: Fail Secure (Fail Safe)

    Fail Secure ensures that when a system fails, it defaults to denying access rather than inadvertently granting it.

  5. How does the concept of 'Privacy by Default' differ from 'Privacy by Design'?

    Answer: Privacy by Default is the operational setting; Privacy by Design is the architectural approach

    Privacy by Design is the overarching framework embedding privacy into systems, while Privacy by Default is one of its seven principles specifying the most protective settings must be automatic.

  6. A CDPSE candidate reviews a data flow diagram and finds that a marketing module can read the HR database without restriction. Which principle does this violate?

    Answer: Least Privilege / Need to Know

    Least Privilege / Need to Know requires that systems only access data directly necessary for their function, preventing unauthorized cross-module data access.

  7. Which design strategy best supports the 'End-to-End Security' Privacy by Design principle for data in transit?

    Answer: Using TLS for all data transmissions between services

    TLS protects data in transit between all services, fulfilling the end-to-end security requirement across the full communication lifecycle.