CV0-002 · Question #353
When considering a public cloud implementation in a hospital, which of the following would the Chief Information Officer (CIO) have to check with respect to storing patient information?
The correct answer is D. Laws and regulations. When a hospital considers using public cloud for patient data, the CIO's primary concern must be compliance with relevant laws and regulations governing protected health information.
Question
When considering a public cloud implementation in a hospital, which of the following would the Chief Information Officer (CIO) have to check with respect to storing patient information?
Options
- AThe board of directors
- BOfferings on the market for budgeting
- CBusiness need
- DLaws and regulations
How the community answered
(13 responses)- C8% (1)
- D92% (12)
Why each option
When a hospital considers using public cloud for patient data, the CIO's primary concern must be compliance with relevant laws and regulations governing protected health information.
While the board of directors provides oversight, they are not the primary source for specific technical compliance requirements regarding patient data storage.
Market offerings and budgeting are financial considerations, secondary to legal and regulatory compliance when handling sensitive patient data.
Business need justifies the project, but it does not dictate the specific legal and technical requirements for secure patient data storage.
Storing patient information (Protected Health Information - PHI) in a hospital setting is subject to strict legal and regulatory frameworks, such as HIPAA in the US or GDPR in the EU. The CIO must ensure that any cloud provider and solution meet these specific compliance requirements to avoid legal penalties and maintain data privacy.
Concept tested: Cloud compliance for sensitive data (PHI)
Source: https://learn.microsoft.com/en-us/compliance/regulatory/hipaa
Topics
Community Discussion
No community discussion yet for this question.