CYB250ModuleOneWorksheet
.docx
keyboard_arrow_up
School
Southern New Hampshire University *
*We aren’t endorsed by this school
Course
250
Subject
Information Systems
Date
Apr 3, 2024
Type
docx
Pages
2
Uploaded by CoachSnail3055
CYB 260 Module One Worksheet
Complete the table below by filling in the three blank columns for each law. The first row has been filled in as an example.
Law
Briefly describe the law.
Whose rights are covered by the law?
Who in an organization is responsible
for ensuring compliance with the law?
Family Educational Rights and Privacy Act (FERPA)
A law that protects student records (for current and former students) in institutions that receive funds from the U.S. Department of Education. It covers all aspect of personally identifiable information (PII) for students within the institution.
Any individual who is or has been enrolled at an educational institution.
Administration that governs student PII (bursar’s or financial aid office).
Computer Security Act
A law that protects Federal computer systems by establishing security policies for sensitive information, mandatory security awareness training for all federal employees utilizing the systems and development of standards of minimum acceptable practices with help
of the NIST (National Institute of Standards and Technology) and NSA (National Security Agency)
Any individuals with information stored on Federal computer systems and Federal employees
Any Federal employee who works in establishment of security protocols, monitoring of protocols and employees who access the system
Sarbanes-Oxley Act
Federal act passed in 2002 to improve auditing and public disclosure in financial accounting of firms in response to accounting scandals in the early-
2000s. The act aimed to prevent a firm’s management from interfering with financial audits. It also sought to increase the independence of audits and
establish internal procedures to ensure accuracy of financials, such as: making the CEO/CFO responsible for all accuracy, documents and submission of financial reports. Any individuals who are investors and/or
shareholders in a public corporation
CEOs, CFOs and accounting employees of public corporations
Law
Briefly describe the law.
Whose rights are covered by the law?
Who in an organization is responsible
for ensuring compliance with the law?
Gramm-Leach-Bliley Act
Federal act requiring financial institutions – any companies that offense consumer financial products like investment advice, insurance, loans, etc – to share their information-sharing practices and help safeguard sensitive PII
Consumers who have received financial products or services like loans, investment advice and insurance from financial institutions
Security employees of financial institutions and any employee responsible for the security of customer data
Health Insurance Portability
and Accountability Act (HIPAA)
HIPAA is a law that required the creation
of national standards to protect PII of patients and health information of patients being disclosed without patient consent. The law prevents patient data from being given to a requested person or institution without provided patient consent
Anyone who has received healthcare in the United States
Any person or organization accessing, using or disclosing PII related to the health of a patient and patient health records
USA Patriot Act
This law was created to deter and punish terrorists and terroristic acts in the United States by enhancing the ability of law enforcement investigatory tools, including: tracking of international
transactions, requiring financial service providers to report potential money laundering and preventing use of the U.S. financial system by corrupt foreign officials.
Anyone who engages in terroristic acts across the world, anyone who commits money laundering and corrupt foreign officials
The United States government and LEO agencies (including Federal, state and local)
Americans With Disabilities Act, Section 508
A law requiring Federal agencies to make electronic and information technology accessible to people with disabilities. Agencies must provide disabled employees and public citizens with access to information comparable to access given to those without a disability
Any citizen of the United States who has been legally classified to be suffering from a disability
The United States government, spearheaded by all Federal agencies including the U.S. Access Board
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
- Access to all documents
- Unlimited textbook solutions
- 24/7 expert homework help