Bird
0
0

A healthcare provider must comply with a framework requiring both data encryption and access logging. How should they apply these requirements together?

hard🚀 Application Q8 of 15
Cybersecurity - Compliance and Governance
A healthcare provider must comply with a framework requiring both data encryption and access logging. How should they apply these requirements together?
ALog access attempts but do not encrypt data to improve speed
BEncrypt data only and ignore access logs to save resources
CEncrypt patient data and record who accesses it and when
DNeither encrypt data nor log access since it's too complex
Step-by-Step Solution
Solution:
  1. Step 1: Understand combined framework requirements

    The framework requires protecting data confidentiality (encryption) and accountability (access logs).
  2. Step 2: Determine correct application of both requirements

    Encrypt patient data and record who accesses it and when correctly applies both by encrypting data and logging access. Other options ignore one or both requirements.
  3. Final Answer:

    Encrypt patient data and record who accesses it and when -> Option C
  4. Quick Check:

    Apply encryption + logging = Compliance met [OK]
Quick Trick: Combine encryption and logging to meet compliance [OK]
Common Mistakes:
MISTAKES
  • Ignoring one requirement to save effort
  • Thinking only one control is enough
  • Avoiding complex compliance steps

Want More Practice?

15+ quiz questions · All difficulty levels · Free

Free Signup - Practice All Questions
More Cybersecurity Quizzes