nerdexam
(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #127

A security consultant hired to design the security policies for the PHI within an organization will be primarily handling:

The correct answer is A. Protected Health information. PHI is a regulatory term defined by the U.S. Health Insurance Portability and Accountability Act (HIPAA) and stands for Protected Health Information. It refers to any individually identifiable health information held or transmitted by a covered entity (such as a hospital or…

Security Principles

Question

A security consultant hired to design the security policies for the PHI within an organization will be primarily handling:

Options

  • AProtected Health information
  • BPersonal Health information
  • CPublic Health information
  • DProcedural Health information

How the community answered

(27 responses)
  • A
    85% (23)
  • B
    7% (2)
  • C
    4% (1)
  • D
    4% (1)

Explanation

PHI is a regulatory term defined by the U.S. Health Insurance Portability and Accountability Act (HIPAA) and stands for Protected Health Information. It refers to any individually identifiable health information held or transmitted by a covered entity (such as a hospital or insurer). A security consultant designing policies around PHI is operating within the HIPAA compliance framework. The other expansions (Personal, Public, Procedural) are not recognized HIPAA terms and do not carry legal or regulatory meaning in this context.

Topics

#PHI#Data Classification#Healthcare Compliance#Security Policies

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY Practice