ISC2 Certified Cloud Security Professional (CCSP) Practice Question

A U.S. retailer is adding an online storefront that will collect personally identifiable information (PII) from customers in mainland China, the European Union, Canada and California. Designers want to copy all customer records to an existing analytics data lake that resides only in a U.S. public-cloud region. Which privacy law is most likely to mandate that PII gathered within its jurisdiction be stored domestically or undergo a government security assessment before it can be transferred abroad, making the proposed design non-compliant?

  • European Union General Data Protection Regulation (GDPR)

  • Canada's Personal Information Protection and Electronic Documents Act (PIPEDA)

  • California Consumer Privacy Act (CCPA)

  • People's Republic of China Personal Information Protection Law (PIPL) and related cyber-security regulations

ISC2 Certified Cloud Security Professional (CCSP)
Legal, Risk and Compliance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot