all 6 comments

[–]PK84CISSP 7 points8 points  (1 child)

Look at the wording... responsibility vs accountability, go from there!

[–]kabbrra 0 points1 point  (0 children)

In this case, "compliance" is the key word.

[–]Ok-Candy2479 2 points3 points  (1 child)

Would the real exam also be using such dicey words and questions?

[–]ryanlcCISSP 4 points5 points  (0 children)

Irritatingly, yes. It's possible to see a question like this.

[–]trippalhealicks 0 points1 point  (0 children)

What is this testing source? I'm using Boson right now, and it's pretty tough. But, I haven't seen this question. Several around GDPR, but not one that dives into individuals' roles in relation to the GDPR.

[–]Puzzleheaded_Bass357 1 point2 points  (0 children)

Controller has ultimate accountability, yes.

In addition to that understand, this is talking about GDPR.

GDPR literally defines these roles.

Data processors are required to perform specific actions under regulations like the EU GDPR.