Bird
0
0

A company wants to minimize GDPR compliance risks by limiting data retention. Which approach aligns best with GDPR requirements?

hard🧠 Conceptual Q8 of 15
Cybersecurity - Compliance and Governance
A company wants to minimize GDPR compliance risks by limiting data retention. Which approach aligns best with GDPR requirements?
ADelete all data immediately after collection
BRetain data indefinitely for future use
CKeep personal data only as long as necessary for the purpose collected
DKeep data only if the user requests deletion
Step-by-Step Solution
Solution:
  1. Step 1: Understand GDPR data retention principle

    GDPR requires personal data to be kept no longer than necessary for the purpose it was collected.
  2. Step 2: Analyze options

    Keep personal data only as long as necessary for the purpose collected follows GDPR. Immediate deletion may break business needs. Indefinite retention violates GDPR. Waiting for user request is insufficient.
  3. Final Answer:

    Keep personal data only as long as necessary for the purpose collected -> Option C
  4. Quick Check:

    GDPR retention = Limit data storage time [OK]
Quick Trick: Store data only as long as needed [OK]
Common Mistakes:
MISTAKES
  • Deleting data too soon breaking operations
  • Keeping data forever without purpose
  • Waiting for user to ask before deleting

Want More Practice?

15+ quiz questions · All difficulty levels · Free

Free Signup - Practice All Questions
More Cybersecurity Quizzes