โ† All General Flashcard Decks

Data Privacy and Security Flashcards

7 cards from real General practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Data Privacy and Security flashcards as text
  1. What is 'ransomware'?

    Answer: Malware that encrypts victim data and demands payment for decryption

    Ransomware is malicious software that encrypts a victim's files and demands a ransom payment, typically in cryptocurrency, in exchange for the decryption key.

  2. Which principle ensures that data is accurate and trustworthy and has not been altered improperly?

    Answer: Integrity

    Integrity is the CIA Triad principle that ensures data remains accurate, consistent, and unaltered except through authorized processes.

  3. What is a 'zero-day vulnerability'?

    Answer: A security flaw unknown to the vendor with no existing patch

    A zero-day vulnerability is a software security flaw that is unknown to the software vendor and therefore has no available patch, making it highly dangerous.

  4. What is the purpose of a 'firewall' in network security?

    Answer: To monitor and control incoming and outgoing network traffic based on rules

    A firewall enforces a security policy by filtering network traffic based on predefined rules, blocking unauthorized access while allowing legitimate communication.

  5. Which U.S. law governs the privacy of health-related information held by healthcare providers and insurers?

    Answer: HIPAA

    The Health Insurance Portability and Accountability Act (HIPAA) sets national standards for protecting sensitive patient health information from disclosure without consent.

  6. What does 'social engineering' mean in cybersecurity?

    Answer: Manipulating people into divulging confidential information or performing actions

    Social engineering exploits human psychology rather than technical vulnerabilities to trick individuals into revealing sensitive information or granting unauthorized access.

  7. What is the role of a Data Protection Officer (DPO)?

    Answer: To oversee an organization's compliance with data protection laws

    A DPO is responsible for ensuring an organization complies with applicable data protection regulations, advising on obligations, and serving as a point of contact for regulators and individuals.