GDPR Practice Question: What is the general timeframe in which a controller must respond to a... | CyberCertPrep
EUGDPRData Subject RightsEASYFree question
What is the general timeframe in which a controller must respond to a data subject access request (DSAR)?
A.7 days
B.30 days (one month)
C.90 days
D.6 months
Why B is correct
Under Article 12(3), the controller must respond to a data subject request without undue delay and in any event within one month of receipt of the request.
Know someone studying for GDPR? Send them this one.
Where this fits in the GDPR exam
Data Subject Rights
Covers data subject rights concepts and practices within GDPR.
This question belongs to the "Data Subject Rights" domain, which makes up about 20% of the GDPR exam.
CyberCertPrep gives you 20 free GDPR questions per day with this same answer-and-explanation depth, plus timed exam simulations and progress tracking. No card required.
GDPR and EU are trademarks or registered trademarks of their respective owners. CyberCertPrep is an independent exam-preparation resource and is not affiliated with, authorized by, sponsored by, or endorsed by EU or any other certification body. All study material is independently created; the certification name is used only to identify the exam this resource helps you prepare for.
The right to restriction of processing means the controller must: