Health & SafetyAnswer Key

Coursera Hipaa

13 community-sourced questions and answers. Free — no login.

Community-sourced. Answers may be wrong or out of date. Always verify with your official training portal before submitting. Not affiliated with any branch, agency, or vendor. Details.
QUESTION 1

A security attack is defined as which of the following?

ANSWER

An event that has been identified by correlation and analytics tools as a malicious activity.

QUESTION 2

Which order does a typical compliance process follow?

ANSWER

Establish scope, readiness assessment, gap remediation, testing/auditing, management reporting

QUESTION 3

Under GDPR who determines the purpose and means of processing of personal data?

ANSWER

Controller

QUESTION 4

Under the International Organization for Standardization (ISO) which standard focuses on Privacy?

ANSWER

ISO 27018

QUESTION 5

Which SOC report is closest to an ISO report?

ANSWER

Type 1

QUESTION 6

What is an auditor looking for when they test control the control for implementation over an entire offering with no gaps?

ANSWER

Completeness

QUESTION 7

The HIPAA Security Rule requires covered entities to maintain which three (3) reasonable safeguards for protecting e-PHI?

ANSWER

technical administrative physical

QUESTION 8

HIPAA Administrative safeguards include which two (2) of the following?

ANSWER

Workforce training and management Security Personnel

QUESTION 9

Who is the governing entity for HIPAA?

ANSWER

NOT US Legislature NOT Department of Homeland Security NOT Cyber Security and Infrastructure Security Agency (CISA) US Department of Health and Human Services Office of Civil Rights

QUESTION 10

HIPAA Physical safeguards include which two (2) of the following?

ANSWER

Facility Access and Control Workstation and Device Security

QUESTION 11

PCI uses which three (3) of the following Card Holder Data Environment categories to determine scope?

ANSWER

0.5 People --- 0.5 Technology--- Processes (correct then i guess) Governance ---

QUESTION 12

One PCI Requirement is using an approved scanning vendor to scan at what frequency?

ANSWER

Quarterly

QUESTION 13

In which CIS control category will you find Incident Response and Management?

ANSWER

Organizational

Looking for a different version?

CBTs get updated every year. Search for the exact version you're taking (e.g. "cyber awareness 2025").

Search all study materials