1-4 Flashcards

1
Q

What is GRC?

A

Governance, Risk, and Compliance. Used by organizations to structure GRC.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is GLBA?

A

Gramm Leach Bliley Act - Security and Privacy of Financial Goods

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is HIPAA?

A

Regulates Medical Records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Ferpa?

A

Education Records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is COPPA?

A

Childrens Online Privacy Protection Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

UE NIS2?

A

Legal Measures to enhance Cybersec in the EU

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Patent?

A

Protects inventions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Trademark?

A

Protects names, icons, shapes, colors, and sounds representing a brand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Copyright?

A

Allows creators to be credited and compensated for their works

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are protected trade secrets?

A

Proprietary business and tech info, processes, designs, or practices that are confidential and critical to a business. They must be commercially valuable, known to only a limited group of people, and subject to reasonable steps taken to keep it secret, including the use of confidentiality agreements for business partners and employees.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

OECD Privacy Principle:

A

Limited collection, data quality (relevance), specified purpose, use limitation, security safeguard, openness principle (should be available), accountability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

EU GDPR

A

General Data Privacy Regulation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

CCPA

A

California Consumer Privacy Act

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

PIPL

A

China Personal information protection law

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

POPI

A

South African Protection of Personal Information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

First steps if you get breached

A

Disclosure and Notification (first contact legal)

17
Q

US Circa?

A

Cyber Incident Reporting for Critical Infrastructure Act

18
Q

GDPR Disclosure/Notification Time

A

72 hours

19
Q

PCI DSS Disclosure/Notification Time

A

3 days

20
Q

What is ISAC?

A

Information and Sharing Analysis Center

21
Q

Where do you report personal cybercrimes?

A

FBI Internet Crime Compliance Center (www.ic3.gov), US CuberySecurity and Infrastructure Security Agency (US CISA- cias.gov)