In India, who among the following would be the authorized legal entities to monitor and intercept communication of individuals?
Technological advancement is inevitable and the speed of change is exponential. In such a scenario, which of the following statement is not true for defining the relationship between privacy protection and technology advancement, both at individual and corporate levels?
Which of the following does not fall under the category of Personal Financial Information (PFI)?
If XYZ & Co. collects, stores and processes personal information of living persons, electronically in a structured filing system, then XYZ could be a:
What does PHI stand for, as per HIPAA/ HITECH?
Under which of the following conditions can a government department refuse to release information under the provisions of RTI Act?
The Indian cancer-treatment hospital Mumbai Hospital has organized a free health checkup for women in a specific district after securing adequate permission from the appropriate authority. During the camp the hospital staffs will be feeding. A computer connected to the hospital network system stores the medical records of these women. Are the participants at this camp required to be informed of the hospital's privacy policy and asked to consent to its collection and processing of personal information?
When sharing personal information (of the data subject) with third parties for processing, which of the following privacy principles includes informed consent?
De-identification of personal information is advocated by which of the following privacy regulations?
According to the IT (Amendment) Act, 2008, a corporate entity could be liable to pay compensation for negligence in implementing and maintaining reasonable security practices and procedures in order to protect Sensitive Personal Data or Information. What is the amount of penalty?
With respect to privacy notice, what are the responsibilities of data controller?
Health insurance firm based in the US uses BPM services provided by an Indian company. It was found that one of the employees of the Indian company exported customer data of the insurance company to another US-based insurance company. Under which of the below ground, the company and its executives in India were also subjected to legal action ?
Which of the following provides the legal basis for an Adjudicating Officer in every Indian state & union territory, with the powers of a civil court, to hear complaints and order compensation to the affected individuals?
Indian constitution does not expressly provide for the “right to privacy” to its citizens. However, there were various judicial pronouncements of the apex court which finally established the “right to privacy” as a fundamental right subsumed under Article 21 of the constitution of India. Article 21 inter alia provides and protects the __________________.
After the rules were notified under section 43A of the IT (Amendment) Act, 2008, a clarification was issued by the government which exempted the service providers, which get access to/processes Sensitive Personal Data or information (SPDI) under contractual agreement with a legal entity located within or outside India. Which privacy principle provisions notified under Sec 43A were exempted for the service providers?
Please select the incorrect statement in context of “Online Privacy”:
Which of the following privacy principle deals with informed consent of the data subject before sharing the personal information (of the data subject) to third parties for processing?
A multinational company with operations in several parts within EU and outside EU, involves international data transfer of both its employees and customers. In some of its EU branches, which are relatively larger in size, the organization has a works council. Most of the data transferred is personal, and some of the data that the organization collects is sensitive in nature, the processing of some of which is also outsourced to its branches in Asian countries.
For exporting EU branch employees’ data to Asian Countries for processing, which of the following instruments could be used for legal data transfer?