Which of the following should internal auditors be attentive of when reviewing personal data consent and opt-in/opt-out management process?

Which of the following should internal auditors be attentive of when reviewing personal data consent and opt-in/opt-out management process?
A . Whether customers are asked to renew their consent for their data processing at least quarterly.
B. Whether private data is processed in accordance with the purpose for which the consent was obtained?
C. Whether the organization has established explicit and entitywide policies on data transfer to third parties.
D. Whether customers have an opportunity to opt-out the right to be forgotten from organizational records and systems.

Answer: C

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments