IS3230 CHAPTER 4 Flashcards
This is a title in the Code of Federal Regulations that deals with Food and Drug Administration (FDA) guidelines on electronic records and signatures. This title requires industries that fall under FDA regs to implement controls and is called ___.
21 CFR Part 11
A documented met odd or system of achieving a specific result in an effective efficient manner. It generally takes lessons learned from individuals or groups so that others can complete similar tasks in a more efficient manner is called ___.
Best practice
A US law passed in 2000. It requires schools and libraries receiving E-rate funds to filter some Internet content. The primary purpose is to protect minors from obscene or harmful content is called ___.
Children’s Internet Protection Act (CIPA)
Information about a student that an educational institution may release without the written consent of the student is called ___.
Directory information
Information about an individual’s health care stored in an electronic format is called ___.
Electronic protected health information (EPHI)
An act of Congress to protect the privacy of education records and applies to all education institutions receiving funding from the US Dept of Education is called ___.
Family Educational Rights and Privacy Act (FERPA)
An act of Congress that allowed banks, investment firms, and insurance companies to consolidate and also introduced some consumer protections, with one free credit report per year is called ___.
Gramm-Leach-Bliley Act (GLBA)
A collection of suggestions and best practices relating to a standard or procedure but doesn’t necessarily need to be met but compliance is strongly encouraged is called ___.
Guideline
Expanded and updated the civil and criminal penalties and requires notification if any breach causing the disclosure of this occurs is called ___.
Health Information Technology for Economic and Clinical Health (HITECH) Act of 2009
Legislation passed in 1996 that protects the privacy and availability of health care information is called ___.
Health Insurance Portability and Accountability Act (HIPAA)
This is a standard issued in August 2007 to enforce the standardization of security identification credentials for government employees and contractors. It covers both physical and logical access to government resources is called ___.
Homeland Security Presidential Directive 12 (HSPD 12)
A place where the operators vies the data that is received and processed and is connected to a database that gathers information from the RTUs is called ___.
Human machine interface (HMI)
Created in 1968 to ensure that the North American energy network is secure, adequate, and reliable and is mostly concerned with the creation of guidelines for strong access controls and processes is called ___.
North American Electric Reliability Council (NERC)
An electronic device used in industrial automation to provide logic and sequencing controls for machinery is called ___.
Programmable Logic controllers (PLCs)
Any information that concerns health status, health care, or any payment for health care that can be linked to the individual. This includes all of an individual’s medical record and payment history is called ___.
Protected health information (PHI)