Recall & Review
beginner
What does GDPR stand for?
GDPR stands for General Data Protection Regulation. It is a law that protects people's personal data in the European Union.
Click to reveal answer
beginner
What is the main purpose of GDPR?
The main purpose of GDPR is to give people control over their personal data and to make organizations responsible for protecting that data.
Click to reveal answer
intermediate
Name two key rights GDPR gives to individuals.
1. The right to access their personal data.<br>2. The right to have their data deleted (right to be forgotten).
Click to reveal answer
beginner
What must organizations do before collecting personal data under GDPR?
Organizations must ensure they have a lawful basis, such as clear and informed consent, before collecting personal data.
Click to reveal answer
intermediate
What should an organization do if it suffers a data breach under GDPR?
They must notify the relevant data protection authority within 72 hours and inform affected individuals if there is a high risk to their rights.
Click to reveal answer
What is the maximum time allowed to report a data breach under GDPR?
✗ Incorrect
GDPR requires organizations to report data breaches within 72 hours of becoming aware of them.
Which of the following is NOT a right under GDPR?
✗ Incorrect
GDPR does not allow unlimited data collection; it requires data minimization and consent.
Who does GDPR apply to?
✗ Incorrect
GDPR applies to any organization worldwide that processes personal data of people living in the EU.
What is required for lawful processing of personal data under GDPR?
✗ Incorrect
GDPR requires clear consent or another legal basis like contract or legal obligation for processing data.
What does the 'right to be forgotten' allow individuals to do?
✗ Incorrect
The right to be forgotten lets individuals ask organizations to delete their personal data under certain conditions.
Explain the main responsibilities organizations have under GDPR when handling personal data.
Think about what organizations must do before, during, and after collecting data.
You got /4 concepts.
Describe the rights GDPR gives to individuals regarding their personal data.
Focus on what people can ask organizations to do with their data.
You got /5 concepts.