acy Profe
n Priv ssi
tio o
na
ma
Certified Information
CIPP l/U
tified Infor
nited States
Privacy Professional/
Cer
US United States
Effective
Effective April 2023
September 2024
CIPP/US Study Guide 1
WELCOME
Congratulations on taking the first step toward achieving an IAPP privacy certification.
This study guide contains the basic information you need to get started, including:
• Key areas of knowledge for the CIPP/US exam.
• Recommended steps to help you prepare for your exam.
• An outline of the body of knowledge for the CIPP/US program.
• An exam blueprint.
• Example questions.
• General exam information.
• An explanation of the IAPP certification program structure.
© IAPP 2024, All Rights Reserved CIPP/US Study Guide 2
CIPP/US key areas of knowledge
The Certified Information Privacy Professional/United States certification launched in
October 2004 as the first professional certification ever to be offered in information
privacy. The CIPP/US credential demonstrates a strong foundation in U.S. privacy laws
and regulations and understanding of the legal requirements for the responsible transfer
of sensitive personal data to/from the U.S., the EU and other jurisdictions.
Subject matter areas covered include:
• The U.S. legal system: definitions, sources of law and sectoral model for privacy
enforcement.
• U.S. federal laws for protection of personal data: FCRA and FACTA, HIPAA, GLBA,
COPPA and DPPA.
• U.S. federal regulation of marketing practices: TSR, DNC, CAN-SPAM, TCPA and JFPA.
• U.S. state data breach notification and select state laws.
• Regulation of privacy in the U.S. workplace: FCRA, EPP, ADA and ECPA plus best
practices for privacy and background screening, employee testing, workplace
monitoring, employee investigation and termination of employment.
© IAPP 2024, All Rights Reserved CIPP/US Study Guide 3