Categories: Homework on time

GGUSF US Veterans Affairs and Loss of Privacy Information Answers Case Study on U.S. Veterans Affairs and Loss of Privacy Information What is the differen

GGUSF US Veterans Affairs and Loss of Privacy Information Answers Case Study on U.S. Veterans Affairs and Loss of Privacy Information
What is the difference between privacy law and information systems security? How are they
related?

Was the employee justified in taking home official data? Why or why not?

Don't use plagiarized sources. Get Your Custom Essay on
GGUSF US Veterans Affairs and Loss of Privacy Information Answers Case Study on U.S. Veterans Affairs and Loss of Privacy Information What is the differen
Just from $13/Page
Order Essay

What are the possible consequences associated with the data loss?

Regarding the loss of privacy data, was there any data containing protected health information
(PHI) making this a Health Insurance Portability and Accountability Act (HIPAA) compliance
violation?

What action can the agency take against the employee concerned?Would the response of the agency have been different had the data theft occurred at work instead
of happening at the employee’s residence? Why or why not?Why were the VA data analyst’s two supervisors reprimanded and demoted by the VA secretary?
Do you think this was justified? Why or why not?What was violated in this data breach?If the database had been encrypted because of VA policy, would this data loss issue even have
been an issue? Why or why not?What risk mitigation or security control recommendations would you suggest to prevent this from
occurring again?What information systems security and privacy security policies do you think would help mitigate
this breach and loss of privacy data?What or who was the weakest link in this chain of security and protection of privacy data?If the VA had performed a security and information assurance audit for compliance, what could
the VA do on an annual basis to help mitigate this type of loose policy conformance?True or false: U.S. taxpayers ended up paying for this VA security breach, notifications, and post-
mortem damage control. 15. Which organization in the U.S. federal government is responsible for performing audits on other
U.S. federal government agencies? (Hint: It is also known as the “Congressional Watchdog.”) 15
Lab #2 – Assessment Worksheet
Case Study on U.S. Veterans Affairs and Loss of Privacy Information
Course Name and Number: _____________________________________________________
Student Name: ________________________________________________________________
Instructor Name: ______________________________________________________________
Lab Due Date: ________________________________________________________________
Overview
In this lab, you reviewed a real-world case study that involved the loss of privacy information,
and you analyzed what violations occurred, the implications of those violations, and the possible
mitigation remedies that could prevent future violations.
Lab Assessment Questions & Answers
1. What is the difference between privacy law and information systems security? How are they
related?
2. Was the employee justified in taking home official data? Why or why not?
3. What are the possible consequences associated with the data loss?
4. Regarding the loss of privacy data, was there any data containing protected health information
(PHI) making this a Health Insurance Portability and Accountability Act (HIPAA) compliance
violation?
5. What action can the agency take against the employee concerned?
Copyright © 2014 by Jones & Bartlett Learning, LLC, an Ascend Learning Company. All rights reserved.
www.jblearning.com
Student Lab Manual
16 | LAB #2 Case Study on U.S. Veterans Affairs and Loss of Privacy Information
6. Would the response of the agency have been different had the data theft occurred at work instead
of happening at the employee’s residence? Why or why not?
7. Why were the VA data analyst’s two supervisors reprimanded and demoted by the VA secretary?
Do you think this was justified? Why or why not?
8. What was violated in this data breach?
9. If the database had been encrypted because of VA policy, would this data loss issue even have
been an issue? Why or why not?
10. What risk mitigation or security control recommendations would you suggest to prevent this from
occurring again?
11. What information systems security and privacy security policies do you think would help mitigate
this breach and loss of privacy data?
12. What or who was the weakest link in this chain of security and protection of privacy data?
13. If the VA had performed a security and information assurance audit for compliance, what could
the VA do on an annual basis to help mitigate this type of loose policy conformance?
14. True or false: U.S. taxpayers ended up paying for this VA security breach, notifications, and postmortem damage control.
17
15. Which organization in the U.S. federal government is responsible for performing audits on other
U.S. federal government agencies? (Hint: It is also known as the “Congressional Watchdog.”)
Copyright © 2014 by Jones & Bartlett Learning, LLC, an Ascend Learning Company. All rights reserved.
www.jblearning.com
Student Lab Manual

Purchase answer to see full
attachment

superadmin

Share
Published by
superadmin

Recent Posts

Consider the following information, and answer the question below. China and England are internation

Consider the following information, and answer the question below. China and England are international trade…

4 years ago

The CPA is involved in many aspects of accounting and business. Let’s discuss some other tasks, othe

The CPA is involved in many aspects of accounting and business. Let's discuss some other…

4 years ago

For your initial post, share your earliest memory of a laser. Compare and contrast your first percep

For your initial post, share your earliest memory of a laser. Compare and contrast your…

4 years ago

2. The Ajax Co. just decided to save $1,500 a month for the next five years as a safety net for rece

2. The Ajax Co. just decided to save $1,500 a month for the next five…

4 years ago

How to make an insertion sort to sort an array of c strings using the following algorithm: * beg, *

How to make an insertion sort to sort an array of c strings using the…

4 years ago

Assume the following Keynesian income-expenditure two-sector model:

Assume the following Keynesian income-expenditure two-sector model:                                                AD = Cp + Ip                                                Cp = Co…

4 years ago