DPDPACT
a- Processing personal data on behalf of a data
1 What is the role of a Data Processor fiduaciary on avalid contract.
A- Data about an individual who is identifiable by
2 What is the definition of 'personal data' under the DPDP Act? or in relation to such data
A- B & D (B. Politely explain that such information
Scenario: Disclosing Information to a Third Party.Situation: a customer’s family cannot be shared without proper authorization.
member visits the branch and requests details about the customer’s account, D.Offer an alternate solution that complies with
claiming urgency. They insist They are authorized but don’t provide written proof. privacy policies, such as requesting the customer to
3 Question: How should the employee handle this situation? contact the bank directly.)
4 Which regulatory body is proposed for enforcing the DPDP Act, 2023 A- Data protection board of india
Q- Scenario: Unauthorized Sharing of Customer Data.An employee receives a
request from a colleague who needs access to a customer's financial data for a
report. The colleague does not have the necessary permissions but assures the
5 employee that it is urgent. What should employee do? A- B& C
Leaving Sensitive Data Unsecured While filling loan papers in the Branch , an
employee steps away for a break, leaving files containing sensitive customer
information visible on his desk. Question: What should the employee have done
6 to prevent a privacy breach A- A& C
7 What is the primary objective of the DPDP Act, 2023? A- To protect the individual data privacy-
Entity responsible for processing personal data on
8 :- Who is defined as a Data Fiduciary under the DPDP Act, 2023? behalf of a data fiduciary .
Which of the following is NOT a security measure recommended under the DPDP
9 Act? A- PUBLCI DISCLOSURE OF DATA
- What is the maximum penalty can Data Fiduciaries face for non-compliance with
10 the DPDP Act? A- UPTO 250 Crores
11 What is the role of the Consent Manager? A- Enabling individual to manage their consent
A- Review the financial history since you have acces
Accessing customer data. While preparing a report , you notice you have access to anyway B- Ignore the data and proceed with your
a celebrity customer’s full financial history even though its unrelated to your task C- Share the data in your social mediato show
12 current task. What you should do? you are havinga celebrity information
- Phising email alert. You receive an email claiming to be from the IT department ,
asking for your login credential to conduct system maintenance. The email
includes an urgent tone and a suspecious link. What should be your course of A- Report the email to your IT security team &
13 action? delete it.
Which of the following is not a right granted to data principals under the DPDP
14 Act? A- Right to compensation
15 What is the role of the data Protection board in case of data breach? A- To investigate and take action.