All Exams

Certified Information Privacy Professional/United States Exam Prep

187+ practice questions

The Certified Information Privacy Professional/United States (CIPP/US) exam validates u.s. privacy environment and privacy program governance, state privacy laws, federal privacy laws, workplace privacy. ExamPal publishes 187 premium questions and a 40-question free practice exam mapped across 5 blueprint domains. The local official-details index records: 90; 2.5 hours; Multiple choice, including scenario-based and multi-select. Candidates should verify current registration, pricing, and scoring details with the official exam authority before booking.

Exam Details

Exam Overview

Administered by

IAPP

Exam Format

90; 2.5 hours; Multiple choice, including scenario-based and multi-select

Passing Score

Verify current official exam guide

Exam Fee

$649 member / $799 non-member for first exam

Prerequisite

Review IAPP official certification page, BoK/study resources, FAQ.

Topics Covered

ExamPal covers all major topics tested on the Certified Information Privacy Professional/United States exam. Our questions are grounded in official study materials.

U.S. Privacy Environment and Privacy Program Governance

Covers the foundations of the U.S. privacy system, core privacy concepts, common privacy harms, and the design and operation of privacy programs. It also includes data lifecycle management, privacy risk assessments, transparency and consent practices, and cross-border and third-party data governance.

State Privacy Laws

Covers major comprehensive state privacy statutes, consumer rights, business obligations, California privacy law, and state enforcement and litigation risk. It also addresses harmonization strategies for organizations operating across multiple states.

Federal Privacy Laws

Covers the federal privacy enforcement landscape and major sectoral regimes, including health, financial, communications, education, children’s, and other federal privacy obligations. It emphasizes agency authority, statutory requirements, and how these laws interact with state law and FTC authority.

Workplace Privacy

Covers privacy issues in the employment context, employee data management across the employment lifecycle, and workplace legal and operational constraints. It emphasizes monitoring, notices, retention, sensitive workforce data, and governance roles.

Government Access and Court Access to Private Information

Covers government access frameworks, litigation and court-driven access to information, and organizational responses to compelled disclosure. It emphasizes constitutional and statutory limits, disclosure mechanisms, protective measures, and defensible response practices.

Exam Blueprint

What the Certified Information Privacy Professional/United States Exam Tests

The exam is divided into 5 domains. Here is what each domain covers and how much weight it carries on the test.

Domain 1: U.S. Privacy Environment and Privacy Program Governance

39% of exam

Covers the foundations of the U.S. privacy system, core privacy concepts, common privacy harms, and the design and operation of privacy programs. It also includes data lifecycle management, privacy risk assessments, transparency and consent practices, and cross-border and third-party data governance.

  • Task 1: Explain the foundations of the U.S. privacy system
  • Distinguish sectoral from omnibus models
  • Legal sources of privacy obligations
  • Self-regulation and private ordering
  • Enforcement actors in privacy
  • Task 2: Apply core privacy concepts and principles in practice
  • Define information categories

Key references: CIPP/US official exam guide · ExamPal shared topic tree

Domain 2: State Privacy Laws

25% of exam

Covers major comprehensive state privacy statutes, consumer rights, business obligations, California privacy law, and state enforcement and litigation risk. It also addresses harmonization strategies for organizations operating across multiple states.

  • Task 1: Compare major comprehensive state privacy statutes
  • Common elements across state laws
  • Scope and applicability
  • Controllers, processors, and service providers
  • State-specific terminology and obligations
  • Task 2: Apply consumer rights under state privacy laws
  • Core consumer rights

Key references: CIPP/US official exam guide · ExamPal shared topic tree

Domain 3: Federal Privacy Laws

23% of exam

Covers the federal privacy enforcement landscape and major sectoral regimes, including health, financial, communications, education, children’s, and other federal privacy obligations. It emphasizes agency authority, statutory requirements, and how these laws interact with state law and FTC authority.

  • Task 1: Explain the federal privacy enforcement landscape
  • FTC Section 5 authority
  • Sector-specific federal regulators
  • Agency guidance and orders
  • Limits without omnibus statute
  • Task 2: Apply health privacy requirements
  • HIPAA scope and actors

Key references: CIPP/US official exam guide · ExamPal shared topic tree

Domain 4: Workplace Privacy

7% of exam

Covers privacy issues in the employment context, employee data management across the employment lifecycle, and workplace legal and operational constraints. It emphasizes monitoring, notices, retention, sensitive workforce data, and governance roles.

  • Task 1: Apply privacy principles in the employment context
  • Workplace privacy issues
  • Employer interests and employee expectations
  • Notices, policies, and access restrictions
  • Minimization and purpose limitation
  • Task 2: Manage employee data throughout the employment lifecycle
  • Employment lifecycle stages

Key references: CIPP/US official exam guide · ExamPal shared topic tree

Domain 5: Government Access and Court Access to Private Information

6% of exam

Covers government access frameworks, litigation and court-driven access to information, and organizational responses to compelled disclosure. It emphasizes constitutional and statutory limits, disclosure mechanisms, protective measures, and defensible response practices.

  • Task 1: Explain government access frameworks
  • Constitutional and statutory limits
  • Types of government access
  • Compelled process types
  • Provider obligations
  • Task 2: Address litigation and court-driven access to information
  • Discovery and preservation

Key references: CIPP/US official exam guide · ExamPal shared topic tree

Why study with ExamPal

Everything you need to prepare for and pass the Certified Information Privacy Professional/United States exam, in one app.

  • 187 CIPP/US premium practice questions
  • Free 40-question interactive practice exam
  • 5 blueprint domains covered
  • 38 glossary terms loaded from the shared terminology pack
  • Detailed explanations and per-option rationales for study review
  • Domain-level review paths with study guide, glossary, and static question pages

Certified Information Privacy Professional/United States Exam — Common Questions

What is the CIPP/US exam?
CIPP/US is Certified Information Privacy Professional/United States. The ExamPal page is built from the shared release pack and maps practice questions to the saved exam blueprint.
How many CIPP/US questions are in ExamPal?
The current shared release pack includes 187 premium questions and a 40-question free practice exam.
What domains does CIPP/US cover?
IAPP body of knowledge domains saved; public FAQ gives format, but no public percentage split captured locally.
Does the free CIPP/US practice exam include explanations?
Yes. The free practice exam includes the correct answer, an explanation summary, and per-option rationales where the shared pack provides them.
Where do the CIPP/US website pages get their data?
The website pages are generated from the ExamPal shared release pack: official materials, syllabus, topic tree, terminology JSON, free-pack questions, and premium-pack questions.

Start your Certified Information Privacy Professional/United States exam prep today

Download ExamPal, take a free diagnostic, and see exactly where you stand before you start studying.