Dexk Flashcards

(40 cards)

1
Q

Which ISO standard is the extension specific to cloud services?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

ISO 27017

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

A breach occurs within a company that processes credit card information. Which industry specific law governs credit card data protection?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

PCI DSS

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Shortly after this movie was released President Reagan asked Congress to enact a law preventing unauthorized individuals from accessing a government system without permission.

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

War Games

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which of these statement about the GDPR is correct?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

people can ask to see their own personal data and it must be honored within 30 days with a possible 60 day extension for complicated requests

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

A federal government agency made a slip up and now 10

A

000 SSN belonging to citizens are leaked out and the citizens want to sue the government agency. What Law can the citizens use to prove their case be paid back for the leak?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

The Privacy Act of 1974

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What was the first act/law put in place for cybersecurity in the United States?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Computer Fraud and Abuse Act

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

In modern times

A

this act is used for defining a framework of guidelines for any organization and mandatory security standards to protect federal government information security and operations. This includes but is not limited to risk assessments

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

FISMA

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Of the following choices which are NOT one of the domains of ISO 27000?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

administrative controls

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

A breach occurs within a company that processes credit card information. Which industry specific law governs credit card data protection?

19
Q

Which aspect of CIA does the Computer Fraud and Abuse Act (CFAA) most contribute to?

20
Q

confidentiality

21
Q

The enactment of this law was a major gain for people in privacy laws as it allows civilians to have access to their own medical records and prevents discrimination based on health status. IT organizations are subject to heavy fines for non-compliance.

23
Q

A school administrator is concerned with the disclosure of a student’s individualized education plan due to a ransomware attack. Which act protects a student’s information?

25
Alan’s firm recently engaged a cloud service provider to handle credit card transactions on the company’s behalf. What role is the provider playing in this scenario?
26
Data processor
27
What key corporate scandals led to the creation of the Sarbanes- Oxley act (SOX)?
28
Enron and Worldcom
29
What is the primary purpose of the Children’s Online Privacy Protection Act (COPPA)?
30
to protect the privacy of children under the age of 13 online
31
Under the Privacy Act of 1974 which groups of people does it set out to restrict and set rules for handling PII (Ex
SSN)?
32
Federal government agencies
33
The enactment of this act was as a result of the Enron corporate financial fallout and holds corporations accountable for public disclosure of financial data. This act also causes organization’s to go through extensive audits.
34
SOX
35
Of the following acts
which of the following is difficult to interpret with modern circumstances of Internet usage?
36
VPPA
37
What type of cybersecurity laws protect your sensitive data from an organization that might want to share it?
38
privacy
39
Which of the following is a requirement for websites under COPPA?
40
Websites must obtain verifiable parental consent before collecting personal information from children under 13