Last Updated: October, 2023
Start Here: If you need a start-to-finish guide for the CIPP/US, check out Complete Guide to Get Your CIPP/US. The complete guide includes a high-level Mapping of the Official Textbook which introduces you to the topics covered by the CIPP/US, how many exam questions per topic to expect, and where to find the topics in the Official Textbook.
If you need a detailed mapping of the CIPP/US Body of Knowledge, keep reading.
What Is This?
Mapping the Official Textbook provides a digestible preview of the topics covered by the CIPP/US Certification Exam. However, people actively studying for the exam need a more detailed perspective.
- Replicating the Body of Knowledge
- Mapping the Exam Blueprint to the Body of Knowledge
- Mapping the Official Textbook chapters to the Body of Knowledge
What Can I Expect?
Combining the Body of Knowledge, Exam Blueprint, and the Official Textbook yields a valuable study resource for anyone pursuing the CIPP/US. First and foremost, this section provides a Sample Mapping—so you can decide whether it is worth your time. Before we get there, let's cover some quick notes and disclaimers:
- If you find any inconsistencies, or if it was useful to you, let me know!
- This is an unofficial study resource, so use your best judgment.
- The number of questions you can expect from the Exam Blueprint is denoted in the format (min, max).
- Some topics may span multiple chapters and sections.
- Not all content in the Body of Knowledge may be covered in the Official Textbook.
Finally, please do not only review the items in this mapping. There is plenty of amazing content in the Official Textbook that helps ensure you understand these topics holistically. This should be an excellent study tool, but it should not be the only study tool you use.
Okay. On to the good stuff.
Introduction to the U.S. Privacy Environment (27, 35)
- Structure of U.S. Law (4, 6) — Chapter 2, 3
- Branches of Government — Chapter 2.1
- Sources of Law
- Constitutions — Chapter 2.2.1
- Legislation — Chapter 2.2.2
- Case Law — Chapter 2.2.3
- Common Law — Chapter 2.2.3
- Contract Law — Chapter 2.2.4
- Regulations and Rules — Chapter 2.2.6
- Legal Definitions
- Person — Chapter 2.3
- Jurisdiction — Chapter 2.3
- Preemption — Chapter 2.3
- Private Right of Action — Chapter 2.3
- Regulatory Authorities
- Federal Trade Commission (FTC) — Chapter 3.3
- Federal Communications Commission (FCC) — Chapter 3.2, 11.1, 13.3.4
- Department of Commerce (DoC) — Chapter 2.4, 3.2
- Department of Health and Human Services (HHS) — Chapter 3.2, 8.1, 10.3, 13.1.2,
- Banking regulators
- Federal Reserve Board — Chapter 3.2, 9.1.2, 9.3.1
- Comptroller of the Currency — Chapter 3.2, 9.3.1
- State Attorneys General — Chapter 3.9, 5.2.5, 7.5, 7.6.4, 7.6.8, 7.8
- Self-Regulatory programs and trust marks — Chapter 3.10, 18.104.22.168
- Understanding Laws
- Scope and application — Chapter 2.6
- Analyzing a law — Chapter 2.6
- Determining jurisdiction — Chapter 2.3, 2.6
- Preemption — Chapter 2.6, 7.8
Where Is It?
The full mapping is not included directly in this post. Let me explain.
The best format for this resource is a PDF. This format ensures the content can be accessed online or offline and is broadly accessible to people across platforms in a readable format. Maintaining a heavily nested list in this post would not be as easily manageable, sharable, etc.
So where is it?
To manage the distribution of the PDF, I use Gumroad. This seems more refined than an open view-only link to Google Drive, Dropbox, etc. You can access the detailed mapping for free via the link below by providing your email address.
If you would like, you can specify a "fair price" e.g., $5, for the PDF to help support the work we do here at The Privacy Practitioner. If you would rather not provide your email to Gumroad, contact me and I will provide a copy of the PDF directly to you. Cheers.
 For instances where a topic spans multiple chapters, I have attempted to account for all chapters with substantial contributions. There may be smaller references that do not present new material which is not included.
 There may be content in the CIPP/US Body of Knowledge that is not discussed explicitly or in particular depth. I have done my best to show where this may be the case.