Courseiva
Data GovernanceeasyMultiple ChoiceObjective-mapped

DA0-002 Data Governance Practice Question

A company must comply with GDPR when reporting customer data. What must be included in the report?

⚠ Common exam trap

It's easy for candidates to confuse operational data elements (like names, source, or retention) with the mandatory transparency obligations under GDPR, assuming that including any data field satisfies compliance, whereas the core requirement is the notice about processing purposes.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

A notice about data processing purposes

Under GDPR, when reporting customer data, the controller must provide a notice about the purposes of data processing to ensure transparency and lawful basis for processing. This is required by Article 13 of the GDPR, which mandates that data subjects be informed of the specific purposes for which their personal data is being processed. Including this notice in the report demonstrates compliance with the accountability principle.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Customer names and emails

    Why it's wrong here

    Including personal data without necessity violates GDPR's data minimization principle.

  • The source of the data

    Why it's wrong here

    While transparency is encouraged, the source is not necessarily required in the report itself.

  • A notice about data processing purposes

    Why this is correct

    GDPR mandates that data subjects be informed of the purposes of processing, especially when data is shared.

  • Data retention period

    Why it's wrong here

    Retention period is important but not specifically required to be in every report.

About these practice questions

Courseiva writes every DA0-002 question from scratch — 986 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This DA0-002 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the DA0-002 exam.