Your organization has a new requirement for annual security training. To track trainin
completion, they are using employee social security numbers as record identification. Are
they compliant or non-compliant? correct answers Non-compliant
Your coworker was teleworking when the agency email system shut down. She had an urgent
deadline so sent you an encrypted set of records containing PII from her personal email
account. Compliant or non? correct answers Non-compliant
You are reviewing personnel records containing PII when you notice a record with missing
information. You contact the individual to update the personnel record. Compliant or non?
correct answers Compliant
Must report breach 1 hour to US-CERT, 24 hours to Component Privacy Office, 48 hours to
the Defense Privacy, Civil Liberties & transparency division correct answers DoD 5400.11-R
Organizations can incur what type of PII penalties? correct answers Civil
What type of penalties can individuals incur for PII breach? correct answers Criminal
T/F phishing is responsible for most of the recent PII breaches? correct answers True
T/F Following a breach, organizations must issue a breach notification. correct answers True
If you discover PII on the web, immediately close your browser & delete all information
regarding the URL correct answers False
Organizations can incur civil penalties for failing to uphold their PII responsibilities. correct
answers True
Individuals are immune to criminal penalities, even if they fail to uphold their PII
responsibilities. correct answers False
Which type of safeguarding measure involves restricting PII access to people with a need to
know correct answers Administrative
Which law establishes the federal government's legal responsibility for safeguarding PII?
correct answers The privacy act of 1974
Identify if a PIA is required... correct answers - PII records are being converted from paper to
electronic
- A new system is being purchased to store PII
Which law establishes the right of the public to access federal government information?
correct answers FOIA
Organizations must report to Congress the status of their PII holdings every... correct answers
Year