CIPP\C exam Flashcards

1
Q

Along with the Senate, what is the other Canadian Federal Parliamentary Chamber?

A

House of Commons

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following is a responsibility of the Canadian Federal Government?

A

Banking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Along with transparency, what other major issue was cited by the Privacy Commissioner of Canada report about the Facebook complaint filled by the Canadian Internet Policy and Public Interest clinic?

A

Consent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which Provincial health law has been deemed substantially similar to the Personal Information and Electronic Documents Act (PIPEDA)?

A

Ontario’s Personal Health Information Protection Act (PHIPA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the Primary purpose of the Info Source?

A

To assist individuals in exercising their rights under the Access to Information Act and the Privacy Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

In 2010, which organization’s social networking tool prompted the privacy commissioner of Canada to call on the company to be more accountable for the personal information it controlled.

A

Google

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which of the following is guaranteed by the Section 7 of the Canadian Charter of Rights and Freedoms?

A

Life, Liberty and Security of the person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which statement about the application of consent principles in Canada is NOT true?

A

The Personal Information Protection and Electronic Documents Act is the only Canadian Law that explicitly deals with the requirement for consent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What factor determines the extent of privacy impact assessment (PIAs) conducted by government institutions in compliance with the Directive on Privacy Impact Assessment?

A

The level of risk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which is NOT a risk factor that government officials must evaluate when framing an outsourcing contract that involves personal or sensitive information?

A

The number of data elements involved

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

In Canadian Provinces that do not have a privacy commissioner, which office is responsibel for oversight of privacy?

A

Ombudsperson

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which is a remedy the Office of the Privacy Commissioner of Canada has after investigating complaints about violations of the Privacy Act?

A

Recommend solutions to government institutions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which organization published the “model code for the Protection of Personal Information” in 1996?

A

Canadian Standards Association

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which Canadian Institution issued a policy requiring that each federal government institution establish measures to ensure that the government institution “ meets the requirements of the Privacy Act when contracting with private-sector organizations, or when establishing agreements or arrangements with public-sector organizations”?

A

The treasury Board of Canada

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which of the following is NOT a term that refers to a health sector participant, such as hospitals, nursing homes or pharmacies?

A

Provider ( correct terms are custodian, trustee, Health Information custodian)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Under the Privacy Act, nonconsensual disclosure of personal information is permitted in all of the following EXCEPT:

A

For the purpose of assisting the individual in resolving a problem by a member of provincial government

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which is NOT a valid reason for denying a Canadian Citizen access to personal information held by a government institution?

A

A member of parliament requests that the information not be disclosed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

In the context of Canadian Health laws, one common theme with respect to consent is that it must be:

A

Meaningful

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which is NOT a main category into which Canadian jurist have classified privacy as it relates to privacy protection?

A

Communications privacy

20
Q

Which Act bars organizations from requiring individuals to undergo a genetic test or disclose the results of a genetic test as a condition of providing goods or services or entering into a contract in Canada?

A

The Genetic Non-Discrimination Act

21
Q

Section 4 of the regulations to the Privacy Act requires government institutions to retain personal information for at least how long following the last time is was used?

22
Q

Which principle is almost single-handedly responsible for the recent proliferation of privacy notices?

23
Q

Which of the following demonstrates the importance of the Personal Information Protection and Electronics Documents Act (PIPEDA) in the case between the Privacy Commissioner of Canada and the Society of Worldwide Interbank Financial Telecommunication (SWIFT)

A

Just because an organization operates in 2 or more jurisdictions does not alleviate its obligations to comply with Canadian Law

24
Q

Barring an authorized extension, how long do Canadian government institutions have to grant access after an individual request?

25
Based on the Privacy Act, which is NOT an example of personal information?
The salary range of a government official
26
In the TJX winners- Homesense case, to which data element collected by the company did the federal and Alberta privacy commissioners object?
Driver's license number
27
Which Canadian jurisdiction does NOT make information regarding how to obtain access to or request correction of personal health information available to public?
British Columbia
28
To which entities does the Personal Information Protection and Electronic Documents Act (PIPEDA) apply?
Any Canadian private-sector organization that discloses, uses or collects personal information for commercial purposes
29
Which province has laws that apply to employee personal information
Alberta
30
Aside from implied consent, which of the following requires consent under Canada's Anti-Spam Legislation (CASL)
A text message that offers a discount on pizza delivereies
31
Canada Political Structure
Parliament - house of commons Federal-provincial and municipal - legislative Executive - Prime minister/ cabinet
32
Common law
All provinces except Quebec
33
Civil Law
Used only in Quebec instead of common law
34
Which legal model of data protection does Canada follow?
Canada+EU - Comprehensive Laws to ensure consistency with pan-European laws (GDPR)
35
What is the difference between privacy policy and a privacy notice/
privacy policy is a set of guidelines for handling, storing and managing PI privacy notice - description of organization information of management policies
36
To whom is the federal commissioner accountable?
OPC - Parliament
37
Which province uses civil law instead of common law
Quebec -civil code
38
Which act restricts government collection of PI even when is publicly available?
privacy act
39
What are the 3 basic obligations organizations must fulfil under PIPEDA?
Reasonableness Consent Access
40
CASL only applies to CEM which originate in canada?
False. CEM sent to recipients in Canada from outside must comply with CASL
41
PIPEDA only applies to Canadian Citizen? PIPEDA only applies to Canadian organizations?
False - Entire Canada | False- In Canada
42
De novo means
From the start
43
What was significant about the decision the supreme court made in the blood tribe case?
Solicitor client privilege is an important legal right
44
What are some of the tools used by Privacy Commissioner to provide guidance on privacy rights and obligation?
Blogs Websites Annual Reports Guidelines
45
Privacy Act specifies an obligation to properly safeguard and retain PI
False
46
Due to concerns about USA Patriot Act, the Privacy Act prohibits the transfer of PI to the USA?
False
47
Which provincial health law hs been deemed substantially similar to PIPEDA?
HIA -+AB health information Act