An IS auditor is conducting a physical security audit of a healthcare facility and finds closed-circuit television (CCTV) systems located in a patient care area. Which of the following is the GREATEST concern?
An IS auditor is conducting a physical security audit of a healthcare facility and finds closed-circuit television (CCTV) systems located in a patient care area. Which of the following is the GREATEST concern?
The greatest concern in a healthcare facility with CCTV systems in patient care areas is the absence of notices indicating that recording is in progress. This is because patients and staff have the right to be informed about surveillance to ensure their privacy is not violated. The facility must adhere to legal requirements and obtain consent, ensuring that individuals are aware of the surveillance measures. This is crucial for maintaining trust and compliance with privacy laws.
A - there are no notices indicating recording is in progress. It is important to inform patients and staff when CCTV systems are in use for recording. This will help to ensure that their privacy is not violated. Patients have the right to know when and why they are being recorded. Additionally, the facility must follow the legal requirements to inform individuals about the use of CCTV systems and obtain their consent.
A. There are no notices indicating recording is in progress.
I think it should be C as not having backup is much worse than not having retention policy
B is more like not having monitoring. Other options are more like having weak controls. B is the greatest concern.
Answer B the absence of 24/7 monitoring poses a more immediate and significant risk to patient safety and security. People's safety and security ALWAYS come FIRST
A. There are no notices indicating recording is in progress.
In a healthcare facility, the GREATEST concern among the options provided would typically be related to patient privacy and confidentiality. A. There are no notices indicating recording is in progress: While it's important to notify individuals if they are being recorded, the lack of notices, while a concern, may not be as significant as the other options. So, in the context of a healthcare facility and considering patient privacy, the GREATEST concern would be option D: The retention period for video recordings is undefined. This poses a risk to patient data privacy and compliance with relevant regulations such as HIPAA (Health Insurance Portability and Accountability Act) in the United States, which governs the security and privacy of healthcare data.
A - there are no notices indicating recording is in progress. It is important to inform patients and staff when CCTV systems are in use for recording. This will help to ensure that their privacy is not violated. Patients have the right to know when and why they are being recorded. Additionally, the facility must follow the legal requirements to inform individuals about the use of CCTV systems and obtain their consent.
A it is