Section 4: Policies and Frameworks Flashcards

1
Q

HIPAA

A

Health Insurance Portability and Accountability Act (HIPAA)
▪ Affects healthcare providers, facilities, insurance companies, and medical data clearing houses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Sarbanes-Oxley (SOX)

A

Publicly traded U.S. corporation are affected by this regulation and must follow certain accounting methods and financial reporting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

GLBA

A

Affects the security of personal identifiable information, prohibits sharing financial information with any third-parties, and provides guidelines for securing that financial information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

FISMA

A

Federal Information Security Management Act of 2002 (FISMA)
▪ Affects federal agencies and require them to develop, document, and implement an agency-wide information systems security program

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

FERPA

A

Family Educational Rights and Privacy Act (FERPA)
▪ A federal law that protects the privacy of student education records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

COPPA

A

o Children’s Online Privacy Protection Act (COPPA)
▪ Imposes certain requirements on websites owners and online services that are directed to children under 13 years of age
▪ COPPA can put a ton of extra requirements on companies trying to serve younger markets with educational content

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

GDPR

A

General Data Protection Regulation (GDPR)
▪ It states that personal data cannot be collected, processed or retained without the individual’s informed consent
▪ GDPR provides a provision in the law to ensure a user has the right to withdraw their consent at any time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SLA

A

This agreement is concerned with the ability to support and respond to problems within a given timeframe while providing the agreed upon level of service to the user

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

MSA

A

This is an agreement for future agreements, allowing the organizations involved to negotiate future contracts much more quickly since they can reference the Master Service Agreement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

NDA

A

Signed between two parties and define what data is considered
confidential and cannot be shared outside of the relationship

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

MOU

A

A non-binding agreement between two or more organizations to detail an intended common line of action

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

BPA

A

Conducted between two business partners and establishes the conditions of their relationship

How well did you know this?
1
Not at all
2
3
4
5
Perfectly