nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #274

CERTIFIED-IN-CYBERSECURITY Question #274: Real Exam Question with Answer & Explanation

The correct answer is C: PII is personal information, while PHI is health-related information. Personally Identifiable Information (PII) refers to data that can be used to identify a specific individual, such as names, social security numbers, and dates of birth. Protected health information (PHI) is health-related information, typically about patients, subject to specific

Security Principles and Concepts

Question

What is the main difference between PII and PHI?

Options

  • APII is encrypted, while PHI is not encrypted
  • BPII is accessible to all users, while PHI is restricted to healthcare professionals
  • CPII is personal information, while PHI is health-related information
  • DPII is subject to regulatory requirements, while HPI is not

Explanation

Personally Identifiable Information (PII) refers to data that can be used to identify a specific individual, such as names, social security numbers, and dates of birth. Protected health information (PHI) is health-related information, typically about patients, subject to specific privacy and security regulations like HIPAA (see ISC2 Study Guide, Module 4, under Governance Elements). Indeed, PII is personal information subject to regulatory requirements, while HPI is health-related information subject to specific privacy and security regulations. PII is not encrypted, while HPI is typically encrypted to protect the sensitive information it contains. PII is accessible to all users, while HPI is usually restricted to healthcare professionals.

Topics

#PII#PHI#Data Classification#Data Privacy

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions