Lesson 6 Flashcards
framework for ensuring effectiveness of infoSec in government
FISMA
protects privacy of students and their parents
FERPA
regulates the financial practice and governance of corporations
SOX
protects customers nonpublic personal information
GLBA
requires privacy protections for health information (PHI)
HIPAA
promotes the adoption of health information technology, specifically EHRs by providers
HITECH
deters and punish terroristic acts
Patriot act
requires agencies to provide public with electronic access to any records of their data since Nov 1, 1996
electronic freedom of information act (E FOIA)
law passed to reduce hacking of government and other sensitive institutional systems
CFAA
law that sets rules for commercial email
CAN-SPAM
imposes certain requirements on operators of websites directed to children under 13
COPPA
security standards designed to ensure all companies that process credit cards maintain a secure environment, not a law
PCI DSS
mandated by law
regulatory compliance
not mandated by law, but can impact business processes
industry compliance