About the certification


The Certified Data Protection Officer (DPO) is a certification intended for individuals seeking to validate their knowledge of data protection and privacy management in alignment with key regulations and standards, including the GDPR, PIPEDA, ISO/IEC 27001, and ISO/IEC 27005.

The exam covers topics such as Scope of the GDPR, Concepts, terms and definitions, Principles, Applicability, Data Subject Rights, Breach Notification, Right to Access, Right to be Forgotten, Data Portability, Retention of Data, Data Protection Impact Assessment (DPIA), Privacy by Design, Data Protection Officer (DPO) and, GDPR fines; Scope of the PIPEDA, Terms and definitions, personal information, the 10 fair information principles, responsibilities, privacy breach, complaints, enforcement, and audits; Scope of the ISO/IEC 27001, Normative references, Terms and definitions, Context of the organization, Leadership, Planning, Support, Operation, Performance evaluation, and Improvement; Scope of the ISO/IEC 27005, Normative references, Terms and definitions, ​Information security risk management, Context establishment, Information security risk assessment process, Information security risk treatment process, Operation, and Leveraging related ISMS processes.

The Certified Data Protection Officer (DPO) certification exam is an online, closed-book, and remotely-proctored exam. It includes 80 questions and the passing score is 70%. Candidates will have 120 minutes to complete the exam. Validate your knowledge of data protection and privacy management, and advance your career. Purchase your exam voucher now!





Information Security Management Foundation (ISO/IEC 27001)

Exam details


Exam code

ITC-183

Launch date

May 28, 2025

Exam description

The Certified Data Protection Officer certification exam validates the candidate’s knowledge of data protection and privacy management in accordance with internationally recognized standards and frameworks, including the GDPR, PIPEDA, ISO/IEC 27001, and ISO/IEC 27005.

Current version

v1 (May 28, 2025)

Exam format

Multiple choice; computer-based; closed book (online proctored exam)

Number of questions

80 questions

Passing score

70% (56 out of 80)

Exam duration

120 minutes

Level

Foundation

Languages

English and Portuguese

Exam description

The exam covers topics such as Scope of the GDPR, Concepts, terms and definitions (Personal Data, Consent, Data Controllers, Data Processors, Cross-border Processing, Data Subject, Personal Data Breach, Processing, Pseudonymization, Supervisory Authority), Principles, Applicability, Data Subject Rights, Breach Notification, Right to Access, Right to be Forgotten, Data Portability, Retention of Data, Data Protection Impact Assessment (DPIA), Privacy by Design, Data Protection Officer (DPO) and, GDPR fines; Scope of the PIPEDA, Terms and definitions, personal information, the 10 fair information principles (Accountability, Identifying Purposes, Consent, Limiting Collection, Limiting Use, Disclosure, and Retention, Accuracy, Safeguards, Openness, Individual Access and Challenging Compliance), responsibilities, privacy breach, complaints, enforcement, and audits; Scope of the ISO/IEC 27001, Normative references, Terms and definitions, Context of the organization, Leadership (Leadership, commitment, policy, organizational roles, responsibilities and authorities), Planning (Actions to address risks and opportunities, information security objectives and planning to achieve them, and planning of changes), Support (Resources, Competence, Awareness, Communication, and Documented information), Operation (Operational planning and control, information security risk assessment, and information security risk treatment), Performance evaluation (Monitoring, measurement, analysis, and evaluation, Internal audit, and Management review), and Improvement (Continual improvement and Nonconformity and corrective action); Scope of the ISO/IEC 27005, Normative references, Terms and definitions, ​Information security risk management, Context establishment, Information security risk assessment process, Information security risk treatment process, Operation, and Leveraging related ISMS processes.

RECOMMENDED HOURS OF STUDY

64 hours

BLOOM'S TAXONOMY

Level 1 (Remembering), Level 2 (Understanding) and Level 3 (Applying)

Recommended reading

• GDPR
• PIPEDA
• ISO/IEC 27001
• ISO/IEC 27005

Prerequisites

There are no prerequisites for this certification

Recommended experience

Six months of work experience in Cybersecurity

Validity period

Lifetime

Exam Content Outline


   Domains Weight

1. GDPR

25%

2. PIPEDA

25%

3. ISO/IEC 27001

25%

4. ISO/IEC 27005

25%

   Total

100%

How to get certified


1

Browse our certification programs and choose your certification.

2

Discover the exam objectives and prepare for your exam.

3

Register for your online proctored exam.

4

Take your online proctored exam in the comfort of your home or office.

5

Congratulations! You are certified!

Frequently Asked Questions


  • After purchasing an exam voucher, how much time do I have to take the exam?

    After purchasing an exam voucher, candidates will have 180 days to take the exam.

  • Does the exam voucher include a retake?

    The exam voucher includes 2 retakes in case the candidate fails the first attempt.

  • Are there any prerequisites to take the exams?

    There are no prerequisites to take the exams. ITCERTS recommends that candidates have at least six months of work experience in the area that the certification exam covers.

  • What is the exam retake policy?

    If a candidate does not achieve a passing score on the first attempt, there is no waiting period between the first and the second attempt. If a candidate does not achieve a passing score on the second attempt, the candidate must wait at least 7 days before retaking the exam for a third time. A candidate may not take a given exam any more than three times per year (12 months).

  • How do I register for an Online Proctored Exam?

    Visit the Online Proctored Exam registration page to find complete instructions.

  • Are there any mandatory training to take an exam?

    Training is recommended as part of your certification preparation, but it is not mandatory.

  • Which languages are the exams available in?

    Our exams are currently available in English and Portuguese.

  • Where can I take the exams?

    Exams are delivered online (Online Proctored Exams) and can be taken from anywhere in the world.

  • Do the ITCERTS certifications expire?

    ITCERTS certifications are considered good-for-life and do not expire.

  • How can a potential employer verify my certifications?

    Your employer can verify your certification on our certification verification page. Your certification number will be needed in order to process the verification.

Subscribe

Subscribe


Subscribe to our newsletter