Technical Privacy Controls Flashcards
7 cards from real CDPSE practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Technical Privacy Controls flashcards as text
Which network architecture pattern isolates services that process personal data, limiting lateral movement if one component is compromised?
Answer: Network segmentation with micro-perimeters
Network segmentation (including micro-segmentation) confines personal data flows to specific zones, reducing the blast radius of a breach.
A Zero Trust Architecture (ZTA) requires that every request be authenticated and authorized regardless of network location. Which privacy benefit does this directly provide?
Answer: It prevents over-privileged lateral access to personal data stores after initial perimeter breach
ZTA's continuous verification principle means that even an attacker who gains internal network access must still authenticate and be authorized before reaching personal data.
An engineer is configuring logging for a system that processes health records. Which of the following is the MOST important privacy consideration for log files?
Answer: PII should be redacted or tokenized in logs unless explicitly required for the audit purpose
Logs frequently become secondary repositories of PII; redacting or tokenizing sensitive fields limits exposure while preserving operational and audit value.
What does 'data residency' control ensure in cloud deployments involving personal data?
Answer: Personal data is stored and processed only within specified geographic boundaries
Data residency controls enforce that personal data remains within a defined jurisdiction to satisfy legal and regulatory requirements such as GDPR adequacy decisions.
A privacy engineer is evaluating a vendor's cloud storage service. Which cryptographic control gives the organization the STRONGEST assurance that the vendor cannot access stored personal data?
Answer: Customer-managed keys stored in an external Hardware Security Module (HSM) the vendor cannot access
Holding encryption keys in an external HSM that the vendor cannot access ensures that even with full access to ciphertext, the vendor cannot decrypt personal data.
Which secure development practice BEST reduces the risk of privacy vulnerabilities being introduced into production systems?
Answer: Integrating privacy threat modeling and code review into the SDLC from design through release
Embedding privacy threat modeling and review throughout the SDLC (Privacy by Design) catches vulnerabilities early when they are cheapest to fix.
A mobile application uses the device advertising identifier (IDFA/GAID) for cross-app tracking. Under a privacy-by-design approach, what is the recommended control?
Answer: Obtain explicit opt-in consent and provide a mechanism to reset or opt out
Privacy-by-design requires explicit user consent for cross-context tracking and user control (opt-out/reset), satisfying both technical and regulatory requirements.