Un-Categorize Flashcards

1
Q

P&DP

A

Privacy & Data Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

OECD

A

Organization for Economic Cooperation and Development

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Organization for Economic Cooperation and Development

A

Privacy and Security Guidelines — aims to globally protect privacy through a practical, risk-management-based approach

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Principles of OECD

A
  1. Collection limitation
  2. Data quality
  3. Purpose specification
  4. Use limitation
  5. Security Safeguards
  6. Openness
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

APEC

A

Asia-Pacific Economic Cooperation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Asia-Pacific Economic Cooperation

A

Privacy Framework — Ensure free flow of information and open conduct of business within the region, while protecting privacy (but not as stringently as EU)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

EU — GDPR Principles

A
  1. Consent
  2. Transfer abroad
  3. The right to be forgotten
  4. Establishing the role of data protection officer
  5. Access requests
  6. Home state regulation
  7. Increase sanctions
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

opt-in

A

opt-out by default; must take action to opt-in prior to data collection.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

PCI-DSS

A

Lvl 2-4 self-audit
Lvl 1 formal audit, more than 6 million transactions per year

Contract vs law; falls under contract -> civil law -> TART ; Civil suit for non-compliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

PCI-DSS 12 requirements

A
  1. Build & maintain a firewall
  2. Do not use vendor-supplied defaults
  3. Protect stored cardholder data
    Never store the CCV/CVV
  4. encrypt transmission over the public network
  5. Use regulated updated AV
  6. Develop & Maintain secure systems & applications
  7. Restrict - Need to know
  8. Use - use unique user IDs for all that have access to cardholder data
  9. Restrict physical access
  10. Track & Monitor - all network & cardholder data access
  11. Test - security systems
  12. Maintain an information security policy
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

preponderance of evidence

A

> 50% (Civil lawsuit)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

EAR - Export Administration Regulations

A

Department of Commerce

export & import of most commercial goods

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

ITAR - international traffic in Arms Regulations(ITAR)

A

Department of state

Export and import of defense-related articles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly