GDPR Practice Question: Under GDPR, a Data Protection Officer (DPO) must be appointed when: | CyberCertPrep
EUGDPRDpo GovernanceEASYFree question
Under GDPR, a Data Protection Officer (DPO) must be appointed when:
A.Every organization must appoint one regardless of size
B.Only when processing financial data
C.Only organizations with more than 500 employees
D.The processing is carried out by a public authority, involves large-scale systematic monitoring, or involves large-scale processing of special category data
Why D is correct
Article 37(1) requires DPO appointment for public authorities, organizations whose core activities require large-scale systematic monitoring, or large-scale special category data processing.
Know someone studying for GDPR? Send them this one.
Where this fits in the GDPR exam
Dpo Governance
Covers dpo governance concepts and practices within GDPR.
This question belongs to the "Controller & Processor Obligations" domain, which makes up about 20% of the GDPR exam.
CyberCertPrep gives you 20 free GDPR questions per day with this same answer-and-explanation depth, plus timed exam simulations and progress tracking. No card required.
GDPR and EU are trademarks or registered trademarks of their respective owners. CyberCertPrep is an independent exam-preparation resource and is not affiliated with, authorized by, sponsored by, or endorsed by EU or any other certification body. All study material is independently created; the certification name is used only to identify the exam this resource helps you prepare for.