Chapter 4 Flashcards

1
Q

Criminal Law - United States Code (USC)
Civil Law - USC
Administrative Law - Code of Fed Regulations (CFR)

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

CFAA (Computer Fraud and Abuse Act)

A

Computer crime related to “federal interest” computer systems, cross-state, interstate commerce, financial institutions

NIIPA (National Info Infra Protection Act) - include international commerce and national infra (power, gas, electr, telecomm, rail)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

FISMA (Federal Information Security Management Act)

A

Require fed agencies to implement an information
security program that covers the agency’s operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Copyright

A

70 years after death of last surviving author
Works for hire or anonymous - whichever is shorter of:
- 95 years after 1st publication
- 120 year after creation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Trademark

A
  • 10 year periods
  • filed with USPTO
  • cannot be confused with another
  • cannot be descriptive
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Patent

A

Utility patents:
- idea of invention
- 20 years

Design patents:
- form (appearance) of invention
- 15 years

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Economic Espionage Act

A

Protect IP and trade secrets; criminal law

Defend Trade Secrets Act - extension of EEA to add civil right of action (civil lawsuits)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Software license types

A
  • Perpetual license - forever
  • Subscription license
  • Open source license (e.g. GNU)
  • Freeware - may come with less features
  • Enterprise license (ELA)
  • End user license agreement (EULA) - acceptable use
  • Concurrent user license - set number of users at the same time
  • Named user license
  • Cloud service license - link or flash info on screen when accessing service
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

ITAR (International Traffic in Arms Regulation)

A

Covers military and defense items including tech info
- US Munitions List (USML)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

EAR (Export Administration Regulations)

A

Covers commercial items that may have military applications
- Commerce Control List (CCL)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Export countries of concern

A

Cuba, North Korea, Iran, Syria

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Bureau of Industry and Security (BIS)

A

Looks after export of security software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Fourth Amendment

A

Gov’t cannot search or wiretap without warrant & probable cause

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Privacy Act

A

Applies to fed gov’t agencies only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

ECPA (Electronic Comm Privacy Act)

A
  • Includes phone, mobile phone, comm over physical wire, electronic comm
  • Illegal to intercept, monitor or disclose
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

CALEA (Comm Assist for Law Enforcement Act)

A

Amend ECPA to require carriers to make wiretap with court order

17
Q

HIPAA (Health Info Portability and Accountability Act)

A

For hospitals, insurance co, health care providers and other orgs that store and process private medical info

HITECH - amend to add notification of breach, and inclusion of business associates

18
Q

COPPA (Children’s Online Privacy Protection Act)

A
  • websites catering to children
  • under 13
  • provide privacy notice
  • parents can access info, request deletion
  • parents must give consent
19
Q

GLBA (Graham-Leach-Bliley Act)

A

Governs info exchanged between financial institutions

20
Q

US PATRIOT Act

A
  • Wiretap all communications of a person with single warrant
  • ISP’s may provide info to gov’t with subpoena
21
Q

CLOUD (Clarifying Lawful Overseas Use of Data) Act

A
  • applies to US-based companies
  • Gov’t can get access to info stored on servers outside US
  • Foreign gov’t can get access if country has agreement
22
Q

FERPA (Federal Educational Rights and Privacy Act)

A
  • Parent/student right to inspect educational records
  • Parent/student right to request for correction
  • No disclosure without written consent
23
Q

EU GDPR

A
  • Legal and transparent processing of personal info
  • Purpose(s) must be clearly stated
  • Data minimization
  • Accuracy
  • Storage limitation
  • Integrity and confidentiality
  • Accountability and demonstrate compliance

2 ways to comply for non-EU companies:
- Standard contractual clauses (SCC)
- Binding corp rules (BCR)

Cannot share with US

24
Q

PIPEDA (Canada)

A
  • Covers info on individual that makes person identifiable
  • excludes info about org or business, gov’t, public servants, anonymous, purely for personal purposes
25
Q

PIPL (China)

A

Similar to GDPR

26
Q

POPIA (South Africa)

A

Similar to GDPR

  • Has special heightened restrictions on children personal info
27
Q

CCPA (California Consumer Privacy Act)

A

Similar to GDPR