S1M2 Flashcards

1
Q

Two types of data breaches

A

Unintentional
Intentional

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Covered members as it relates to HIPPA

A

Health care provider
Health Plans
Health Care Clearing House
Business associates who need to access records for a covered entity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Three types of safeguards and examples of each

A

Administrative safeguard - assigning security responsibility, workforce security, security awareness training
Physical safeguards - facility access controls, workstation use and security. device and media control
Technical safeguards - access control, audit control, data integrity control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Who does GDPR apply to

A

Data processors in the EU
Data processors outside of the EU if they provide goods and services to those in the EU
Data processors outside of the EU but where EU applies via public international law

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

6 principles of GDPR

A

Lawfulness
Accuracy
Integrity
Data minimalization
Storage Limitation
Purpose Limitation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

6 goals of PCI DSS

A

Build secure network
Protect Data
Vulnerability management
Implement strong controls
Regularly monitor system
Maintain secure policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly