QS0015-02: Data Management Policy Flashcards

1
Q

QS0015-01: Data Management Policy

What are the Data Owner responsibilities?

A

Understanding use and risk associated with the information

Classification

Ensuring measures are in place to properly secure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

QS0015-01: Data Management Policy

What agreement must be signed by a third-party vendor when transferring electronic storage media for sanitation?

A

A third-party vendor non-disclosure agreement.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

QS0015-01: Data Management Policy

What are data access restrictions?

A

Access to data must be restricted to users or information systems with a legitimate business need and authorized by the data owner or an authorized delegate of the owner.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

QS0015-01: Data Management Policy

May Personally Identifiable Information (PII) data leave the AWS network?

A

PII data should never leave the hosted, protected network, even to approved, connected devices. For example, developers must not copy a LIMS database, or application files for such a site onto a local device. It must remain on servers provided for this purpose within the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

QS0015-01: Data Management Policy

Who is responsible for assuring backup procedures, retention, and data protection?

A

Application owners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

QS0015-01: Data Management Policy

How would you describe the data disposal process written within the policy?

A
  1. Data disposal is permissible by or at the direction of the data owner.
  2. Data owners must follow data retention and disposal procedures.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly