Privacy Awareness Flashcards
A critical element of an information privacy program is the …, training and education program
privacy awareness
A workforce that has high level of privacy awareness and appropriate privacy training for everyone’s role is as important as any other privacy counter measure or control. [T/F]
True
is the extent to which staff understands the importance of information privacy, the level of privacy required for a personal information stored and processed by the organization, and their privacy responsibilities.
Privacy awareness
is the extent to which staff demonstrates expected privacy behavior in line with their privacy responsibilities and the level of privacy required for personal information stored and processed by the organization.
Privacy culture
A set of activities that explains and promotes security, establishes accountability, and informs the workforce of security news. Participation in security awareness programs is required for all employees.
Awareness
Intended to develop secure practices in the use of IT resources.
This level is needed for employees, including contractor employees, who are involved in any way with IT systems.
It provides the foundation for subsequent specialized or role-based training by providing a universal baseline of key security terms and concepts.
Cybersecurity essentials
Intended to provide the knowledge and skill-specific to an individual’s roles and responsibilities relative to information systems.
Training supports competency development and helps personnel understand and learn how to perform their security roles.
Role-based training
Integrates all of the security skills and competencies of the various functional specialties into a common body of knowledge and adds a multidisciplinary study of concepts, issues, and principles
Education/certification
All employees have some responsibilities related to the protection of personally identifiable information (PII); all employees must have suitable awareness training.
This training seeks to focus an individual’s attention on an issue or a set of issues. [T/F]
True
Awareness training is a program that continually pushes the privacy message to users in a variety of formats.
A privacy awareness program must real all employees, not just those with access to IT resources.
Such topics as physical security, protocols for admitting visitors, social media rules, and social engineering threats are of concern to all employees. [T/F]
True