Free CIPP/E Exam Flashcards
Memorize 50 essential terms and definitions for the Certified Information Privacy Professional/Europe (CIPP/E). See the term, recall the definition, then flip to check yourself.
Personal data (GDPR Art. 4)
Any information relating to an identified or identifiable natural person. Identifiability can be direct (name) or indirect (an ID number, location data, online identifier, or factors specific to the person's identity).
Filter by Topic
Jump to Card
About These CIPP/E Flashcards
These 50 flashcards are designed to help you memorize key terms and definitions for the Certified Information Privacy Professional/Europe (CIPP/E). Each card shows a term on the front and its definition on the back—the classic flashcard format for vocabulary memorization. Use these alongside our practice questions to build both recall and comprehension.
Topics Covered
Frequently Asked Questions
What is the CIPP/E exam format?
The CIPP/E is a 90-question multiple-choice exam with a 2.5-hour time limit. IAPP scores 75 of the questions and uses the remaining 15 as unscored pretest items. The passing score is 300 on a scaled range of 100 to 500. The exam is delivered through Pearson VUE either at a test center or via OnVUE online proctoring.
Which blueprint area carries the most CIPP/E questions?
European Data Protection Law and Regulation is the largest area at 18-28 scored questions, followed by European Data Processing at 13-21 scored questions. Together they cover core GDPR concepts, lawful bases, data subject rights, transparency, security, and international transfers, so most study time should go there.
Does the CIPP/E require work experience or sponsorship?
No. There is no formal education, experience, or sponsorship prerequisite to sit the CIPP/E. Anyone can register and take it. After passing, you maintain the credential through continuing privacy education plus either IAPP membership or the certification maintenance fee.
Is the CIPP/E only about memorizing GDPR articles?
No. The exam is scenario-driven and tests application of the rules. Many questions hinge on controller versus processor roles, selecting the correct lawful basis, transparency timing, transfer safeguards, and how GDPR interacts with ePrivacy and other EU rules in practical business situations.
What is the GDPR breach notification deadline tested on the CIPP/E?
Under GDPR Article 33, a controller must notify the competent supervisory authority of a personal data breach without undue delay and, where feasible, within 72 hours of becoming aware of it. If the breach is likely to result in a high risk to individuals, affected data subjects must also be notified under Article 34.
How large are GDPR fines under the rules the CIPP/E tests?
GDPR has two fine tiers. The lower tier reaches up to 10 million euros or 2% of total worldwide annual turnover, whichever is higher. The upper tier, for the most serious infringements such as violating data subject rights or transfer rules, reaches up to 20 million euros or 4% of total worldwide annual turnover, whichever is higher.
Explore More IAPP Certifications
Continue into nearby exams from the same family. Each card keeps practice questions, study guides, flashcards, videos, and articles in one place.
More From This Family
Videos and articles for deeper review.