Certified Information Privacy Professional/United States Exam Prep
The Certified Information Privacy Professional/United States (CIPP/US) exam validates u.s. privacy environment and privacy program governance, state privacy laws, federal privacy laws, workplace privacy. ExamPal publishes 187 premium questions and a 40-question free practice exam mapped across 5 blueprint domains. The local official-details index records: 90; 2.5 hours; Multiple choice, including scenario-based and multi-select. Candidates should verify current registration, pricing, and scoring details with the official exam authority before booking.
Exam Details
Exam Overview
Administered by
IAPP
Exam Format
90; 2.5 hours; Multiple choice, including scenario-based and multi-select
Passing Score
Verify current official exam guide
Exam Fee
$649 member / $799 non-member for first exam
Prerequisite
Review IAPP official certification page, BoK/study resources, FAQ.
Topics Covered
ExamPal covers all major topics tested on the Certified Information Privacy Professional/United States exam. Our questions are grounded in official study materials.
U.S. Privacy Environment and Privacy Program Governance
Covers the foundations of the U.S. privacy system, core privacy concepts, common privacy harms, and the design and operation of privacy programs. It also includes data lifecycle management, privacy risk assessments, transparency and consent practices, and cross-border and third-party data governance.
State Privacy Laws
Covers major comprehensive state privacy statutes, consumer rights, business obligations, California privacy law, and state enforcement and litigation risk. It also addresses harmonization strategies for organizations operating across multiple states.
Federal Privacy Laws
Covers the federal privacy enforcement landscape and major sectoral regimes, including health, financial, communications, education, children’s, and other federal privacy obligations. It emphasizes agency authority, statutory requirements, and how these laws interact with state law and FTC authority.
Workplace Privacy
Covers privacy issues in the employment context, employee data management across the employment lifecycle, and workplace legal and operational constraints. It emphasizes monitoring, notices, retention, sensitive workforce data, and governance roles.
Government Access and Court Access to Private Information
Covers government access frameworks, litigation and court-driven access to information, and organizational responses to compelled disclosure. It emphasizes constitutional and statutory limits, disclosure mechanisms, protective measures, and defensible response practices.
Exam Blueprint
What the Certified Information Privacy Professional/United States Exam Tests
The exam is divided into 5 domains. Here is what each domain covers and how much weight it carries on the test.
Domain 1: U.S. Privacy Environment and Privacy Program Governance
39% of examCovers the foundations of the U.S. privacy system, core privacy concepts, common privacy harms, and the design and operation of privacy programs. It also includes data lifecycle management, privacy risk assessments, transparency and consent practices, and cross-border and third-party data governance.
- Task 1: Explain the foundations of the U.S. privacy system
- Distinguish sectoral from omnibus models
- Legal sources of privacy obligations
- Self-regulation and private ordering
- Enforcement actors in privacy
- Task 2: Apply core privacy concepts and principles in practice
- Define information categories
Key references: CIPP/US official exam guide · ExamPal shared topic tree
Domain 2: State Privacy Laws
25% of examCovers major comprehensive state privacy statutes, consumer rights, business obligations, California privacy law, and state enforcement and litigation risk. It also addresses harmonization strategies for organizations operating across multiple states.
- Task 1: Compare major comprehensive state privacy statutes
- Common elements across state laws
- Scope and applicability
- Controllers, processors, and service providers
- State-specific terminology and obligations
- Task 2: Apply consumer rights under state privacy laws
- Core consumer rights
Key references: CIPP/US official exam guide · ExamPal shared topic tree
Domain 3: Federal Privacy Laws
23% of examCovers the federal privacy enforcement landscape and major sectoral regimes, including health, financial, communications, education, children’s, and other federal privacy obligations. It emphasizes agency authority, statutory requirements, and how these laws interact with state law and FTC authority.
- Task 1: Explain the federal privacy enforcement landscape
- FTC Section 5 authority
- Sector-specific federal regulators
- Agency guidance and orders
- Limits without omnibus statute
- Task 2: Apply health privacy requirements
- HIPAA scope and actors
Key references: CIPP/US official exam guide · ExamPal shared topic tree
Domain 4: Workplace Privacy
7% of examCovers privacy issues in the employment context, employee data management across the employment lifecycle, and workplace legal and operational constraints. It emphasizes monitoring, notices, retention, sensitive workforce data, and governance roles.
- Task 1: Apply privacy principles in the employment context
- Workplace privacy issues
- Employer interests and employee expectations
- Notices, policies, and access restrictions
- Minimization and purpose limitation
- Task 2: Manage employee data throughout the employment lifecycle
- Employment lifecycle stages
Key references: CIPP/US official exam guide · ExamPal shared topic tree
Domain 5: Government Access and Court Access to Private Information
6% of examCovers government access frameworks, litigation and court-driven access to information, and organizational responses to compelled disclosure. It emphasizes constitutional and statutory limits, disclosure mechanisms, protective measures, and defensible response practices.
- Task 1: Explain government access frameworks
- Constitutional and statutory limits
- Types of government access
- Compelled process types
- Provider obligations
- Task 2: Address litigation and court-driven access to information
- Discovery and preservation
Key references: CIPP/US official exam guide · ExamPal shared topic tree
Why study with ExamPal
Everything you need to prepare for and pass the Certified Information Privacy Professional/United States exam, in one app.
- 187 CIPP/US premium practice questions
- Free 40-question interactive practice exam
- 5 blueprint domains covered
- 38 glossary terms loaded from the shared terminology pack
- Detailed explanations and per-option rationales for study review
- Domain-level review paths with study guide, glossary, and static question pages
Certified Information Privacy Professional/United States Exam — Common Questions
What is the CIPP/US exam?
How many CIPP/US questions are in ExamPal?
What domains does CIPP/US cover?
Does the free CIPP/US practice exam include explanations?
Where do the CIPP/US website pages get their data?
Start your Certified Information Privacy Professional/United States exam prep today
Download ExamPal, take a free diagnostic, and see exactly where you stand before you start studying.