Which of the following should internal auditors be attentive of when reviewing personal data consent and opt-in/opt-out management process?

Which of the following should internal auditors be attentive of when reviewing personal data consent and opt-in/opt-out management process?
A . Whether customers are asked to renew their consent for their data processing at least quarterly.
B . Whether private data is processed in accordance with the purpose for which the consent was obtained?
C . Whether the organization has established explicit and entitywide policies on data transfer to third parties.
D . Whether customers have an opportunity to opt-out the right to be forgotten from organizational records and systems.

Answer: C

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments