Identifies Privacy and Compliance Guidelines Flashcards

1
Q

HIPPA = Health Insurance Portability and Accountability Act

A

Protects patient health information (PHI)
ex: A hospital cannot share patient records without consent

HIPPA helps hide health info

remembering: Health

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

FISMA = Federal Information Security Management Act

A

Requires federal agencies to secure their IT systems
ex: A government website must follow strict crybersecurity protocols

FISMA = Federal Info Security Mandate Applied

remembering: Federal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

FERPA = Family Education Rights and Privacy Act

A

Protects student education records
ex: A school cannot release student grades without permission

FERPA = Family Education Records Privacy Act

remembering: Education

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

GLBA = Gramm-Leach-Bliley Act

A

Requires financial institutions to protect customer data
ex: Banks must tell customers how they use their personal info

GLBA = Guarding Loans & Bank Accounts

remembering: Banking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

SOX = Sarbanes-Oxley Act

A

Ensures financial transparency in public companies
ex: A company must keep accurate financial records

SOX = Stops financial fraud

remembering: Stocks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

COPPA = Children’s Online Privacy Protection Act

A

Protects children’s data online ( under 13 )
ex: A website must get parental consent before collecting kid’s data

COPPA = Kids’ COP ( online privacy )

remember: Children

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

PCI DSS = Payment Card Industry Data Security Standard

A

Secures credit card transactions
ex: A store must encrypt credit card transactions

PCI = Protect Card Info

remembering: Credit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

FCRA = Fair Credit Reporting Act

saw this as an answer on the exam so looked it up

A

Regulates accuracy and privacy of credit reports
ex: You can disput incorrect info on your credit report

FCRA = Fair Credit Rules Always

remembering: Credit

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

GDPR = General Data Protection Regulation

A

Protects EU citizens’ personal data
ex: A company must allow users to delete their data

GDPR = Guard Data, Protect Rights

remembering: Privacy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

FOIA = Freedom of Information Act

A

Allows the public to access government records
ex: A journalist can request government documents

FOIA = Find Out Info Act

remembering: Transparency

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

CFAA = Computer Fraud and Abuse Act

saw this as an answer on the exam so looked it up

A

Criminalizes hacking and unauthorized computer access
ex: Hacking into a bank system is illegal under CFAA

CFAA = Cyber Fraud And Access law

remembering: Hacking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

EDD = Electronic Discovery and Disclosure

saw this as an answer on the exam so looked it up

A

Governs digital evidence in legal cases
ex: Emails can be used in lawsuits under EDD rules

EDD = E-Discovery Done DIgitally

remembering: Evidence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

PII = Personally Identifiable Information

A

Any info that can identify a person (name, SSN, etc.)
ex: A company must secure customer SSNs.

PII = Protect indiviual Info

remembering: Identity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

FDIC = Federal Deposit Insurance Corporation

saw this as an answer on the exam so looked it up

A

Insures bank deposits up to $250,000
ex: If a bank fails, your money is still safe

FDIC = Funds Deposited Insured Completely

remembering: Insurance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

CCPA = California Consumer Privacy Act

A

Gives California residents rights over their data
ex: Companies must allow Californians to opt out of data sales

CCPA = CA Consumers Protecting Access

remembering: California

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

HITECH = Health Information Technology for Economic and Clinical Health Act

A

Strengthens HIPPA for electronic health records (EHRs)
ex: Hospitals must secure digital patient data

HITECH = HIPPA’s Tech Upgrade

remembering: E-Health

17
Q

GEOINT = Gerospatial Intelligence

saw on exam as answer won’t be answer but knowledge is what we need

A

Earth Intelligence
Imagery, maps and geospatial data

18
Q

HUMINT = Human Intelligence

saw on exam as answer won’t be answer but knowledge is what we need

A

interviews and espionage

19
Q

SIGINT = Signals Intelligence

saw on exam as answer won’t be answer but knowledge is what we need

A

gathering intel like radio signals, phone calls or internet traffic

20
Q

OSINT = Open-Source Intelligence

on exam with others and more than likely the answer

A

Refers to collection and analysis of publicly available information to produce actionable intelligence.

ex: A government agency analyzes publicly available financial records and market data to monitor economic trends and detect potential fraud

remembering: Public Clues Investigation

21
Q

ISO/IEC 25000

saw on exam as answer won’t be answer but knowledge is what we need

A

It provides guidelines for software product quality including useability, security and maintainbility

remembering: Software Quality

22
Q

ISO/IEC 26000

saw on exam as answer won’t be answer but knowledge is what we need

A

it offers guidance on corpoate social rresponsibiliity (CSR) including ethical behavior, environmental sustainabilty and community engagement

remembering: Social Responsibility

23
Q

ISO/IEC 27000

more than likely the answer with the other ISO/IEC answers on exam

A

It is a family of standards focused on information security management, ensuring data confidentiality, integrity and availability

remembering: Information Security

24
Q

ISO/IEC 28000

saw on exam as answer won’t be answer but knowledge is what we need

A

It defines security management systems for supply chains, addressing risks like theft, fraud and disruptions

remembering: Supply Chain Security

25
What is Privacy Act?
It is a federal law in the US that reglates the colletion, use and dissemination of personal information by federal agencies. It aims to protect the privacy of indiviuals by establishing controls over how their personal data is handled. ex: A federal Agency conducts background checks on employees and limits access to sensitive information only to authorized personnel in compliance with the Privacy Act. ## Footnote remembering: Protective Shield guarding personal information