Certified Information Privacy Professional – Europe (CIPP/E) — Question 284
WP29’s “Guidelines on Personal data breach notification under Regulation 2016/679’’ provides examples of ways to communicate data breaches transparently. Which of the following was listed as a method that would NOT be effective for communicating a breach to data subjects?
Answer options
- A. A postal notification
- B. A direct electronic message
- C. A notice on a corporate blog
- D. A prominent advertisement in print media
Correct answer: C
Explanation
The correct answer is C because a notice on a corporate blog may not reach all affected data subjects effectively, as not everyone may regularly visit the blog. In contrast, postal notifications, direct electronic messages, and prominent advertisements in print media are more proactive methods that can ensure wider awareness of the breach.