100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

IFT 381 Module 6 concepts Exam Questions and Answers Latest Update 2025/2026

Rating
-
Sold
-
Pages
6
Grade
A+
Uploaded on
05-12-2025
Written in
2025/2026

IFT 381 Module 6 concepts Exam Questions and Answers Latest Update 2025/2026 FISMA - Answers The Federal Information Security Management/Modernization Act; U.S. law requiring federal agencies to secure information systems using NIST standards and report incidents to US-CERT. PHI - Answers Protected health information; any individually identifiable health information about past, present, or future health status, treatment, or payment. Business Associate (HIPAA) - Answers An organization that performs functions involving PHI on behalf of a covered entity, such as billing, claims processing, or data storage. CIPA - Answers Children's Internet Protection Act requiring schools and libraries receiving ERate funds to filter harmful or obscene internet content for minors. HIPAA Scope - Answers HIPAA applies to past, present, and future health information, not just current health information. PCI DSS Vulnerability Management - Answers PCI DSS objective requiring antivirus installation, malware protection, signature updates, and secure maintenance of systems affected by malware. GLBA Privacy Rule - Answers Requires financial institutions to provide privacy notices and allow consumers to opt out of data sharing with nonaffiliated third parties. ISO/IEC 27002 - Answers Current ISO standard providing best-practice guidelines for information security management. RFC False Statement - Answers RFCs cannot be modified once published; new RFCs must be published to update or replace them. W3C - Answers World Wide Web Consortium that creates standards ensuring web compatibility across different vendors and platforms. IETF - Answers Internet Engineering Task Force; a collection of working groups that create internet standards published as RFCs. IEEE - Answers Institute of Electrical and Electronics Engineers; develops global technical and electronic standards including IEEE 802 LAN/MAN. NIST - Answers National Institute of Standards and Technology; produces SP 800 series including risk management, control baselines, and federal security guidelines. IEC - Answers International Electrotechnical Commission; prepares global standards for electrical and electronic technologies. ANSI - Answers American National Standards Institute; coordinates U.S. voluntary consensus

Show more Read less
Institution
IFT 381
Course
IFT 381









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
IFT 381
Course
IFT 381

Document information

Uploaded on
December 5, 2025
Number of pages
6
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

IFT 381 Module 6 concepts Exam Questions and Answers Latest Update 2025/2026

FISMA - Answers The Federal Information Security Management/Modernization Act; U.S. law
requiring federal agencies to secure information systems using NIST standards and report
incidents to US-CERT.

PHI - Answers Protected health information; any individually identifiable health information
about past, present, or future health status, treatment, or payment.

Business Associate (HIPAA) - Answers An organization that performs functions involving PHI
on behalf of a covered entity, such as billing, claims processing, or data storage.

CIPA - Answers Children's Internet Protection Act requiring schools and libraries receiving E-
Rate funds to filter harmful or obscene internet content for minors.

HIPAA Scope - Answers HIPAA applies to past, present, and future health information, not just
current health information.

PCI DSS Vulnerability Management - Answers PCI DSS objective requiring antivirus installation,
malware protection, signature updates, and secure maintenance of systems affected by
malware.

GLBA Privacy Rule - Answers Requires financial institutions to provide privacy notices and allow
consumers to opt out of data sharing with nonaffiliated third parties.

ISO/IEC 27002 - Answers Current ISO standard providing best-practice guidelines for
information security management.

RFC False Statement - Answers RFCs cannot be modified once published; new RFCs must be
published to update or replace them.

W3C - Answers World Wide Web Consortium that creates standards ensuring web compatibility
across different vendors and platforms.

IETF - Answers Internet Engineering Task Force; a collection of working groups that create
internet standards published as RFCs.

IEEE - Answers Institute of Electrical and Electronics Engineers; develops global technical and
electronic standards including IEEE 802 LAN/MAN.

NIST - Answers National Institute of Standards and Technology; produces SP 800 series
including risk management, control baselines, and federal security guidelines.

IEC - Answers International Electrotechnical Commission; prepares global standards for
electrical and electronic technologies.

ANSI - Answers American National Standards Institute; coordinates U.S. voluntary consensus

, standards including IT and manufacturing.

ETSI - Answers European Telecommunications Standards Institute; develops telecom and
cybersecurity standards including TC CYBER.

PCI DSS - Answers Payment Card Industry Data Security Standard; protects cardholder data with
12 core security requirements.

PCI DSS Requirement 1 - Answers Install and maintain a firewall configuration to protect
cardholder data.

PCI DSS Requirement 2 - Answers Do not use vendor-supplied defaults for system passwords
and other security parameters.

PCI DSS Requirement 3 - Answers Protect stored cardholder data.

PCI DSS Requirement 4 - Answers Encrypt transmission of cardholder data across open, public
networks.

PCI DSS Requirement 5 - Answers Use and regularly update anti-malware protection.

PCI DSS Requirement 6 - Answers Develop and maintain secure systems and applications.

PCI DSS Requirement 7 - Answers Restrict access to cardholder data based on need-to-know.

PCI DSS Requirement 8 - Answers Assign unique IDs to each person with computer access.

PCI DSS Requirement 9 - Answers Restrict physical access to cardholder data.

PCI DSS Requirement 10 - Answers Track and monitor all access to network resources and
cardholder data.

PCI DSS Requirement 11 - Answers Regularly test security systems and processes.

PCI DSS Requirement 12 - Answers Maintain a policy addressing information security for all
personnel.

PCI Merchant Level 1 - Answers Merchants processing over 6 million transactions per year;
requires onsite QSA audit annually.

PCI Merchant Level 2 - Answers Merchants processing 1-6 million transactions per year;
requires annual audit and AOC.

PCI Merchant Level 3 - Answers Merchants processing 20,000-1 million e-commerce
transactions per year; requires SAQ and quarterly scan.

PCI Merchant Level 4 - Answers Merchants processing fewer than 20,000 transactions; requires
SAQ and quarterly scan.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TutorJosh Chamberlain College Of Nursing
View profile
Follow You need to be logged in order to follow users or courses
Sold
328
Member since
1 year
Number of followers
16
Documents
28195
Last sold
1 day ago
Tutor Joshua

Here You will find all Documents and Package Deals Offered By Tutor Joshua.

3.6

52 reviews

5
18
4
14
3
11
2
0
1
9

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions