Family Educational Rights and Privacy Act (FERPA), Health Insurance Portability and Accountability Act (HIPAA), 1995 Data Protection Directive (95/46/E.C. Further, PII is defined as information: (i) that directly identifies an individual (e.g., name, address, social security number or other identifying number or code, telephone number, email address, etc.) Thieves can sell this information for a profit. IDENTIFYING & SAFEGUARDING PII Which of the following are risk associated with the misuse or improper disclosure of PII? The purpose of Lesson 1 is to provide an overview of Cyber Excepted Service (CES) HR Elements Course in general. The purpose of this lesson is to review the completed course work while reflecting on the role of HR Practitioners in CES organizations. Any information that can be used to determine one individual from another can be considered PII. @media (max-width: 992px){.usa-js-mobile-nav--active, .usa-mobile_nav-active {overflow: auto!important;}} PCI compliance includes taking responsibility for ensuring that financial data is protected at all stages, including when it is accepted, transferred, stored, and processed. Avoid compromise and tracking of sensitive locations. #block-googletagmanagerfooter .field { padding-bottom:0 !important; } They may also use it to commit fraud or other crimes. Personal Identifiable Information (PII) is defined as: Any representation of information that permits the identity of an individual to whom the information applies to be reasonably inferred by either direct or indirect means. hb```> AX @Lt;8w$02:00H$iy0&1lcLo8y l ;SVn|=K 0000001903 00000 n The GDPR requires companies to get explicit permission from individuals before collecting, using, or sharing their personal data. Captain Padlock: Personally Identifiable Information (PII) isinformation used to distinguish or trace an individual's identity, such as name, social security number, mother's maiden name, and biometric records. 0000001866 00000 n When collecting PII, organizations should have a plan in place for how the information will be used, stored, and protected. Safeguards are used to protect agencies from reasonably anticipated. 0000002651 00000 n PII is information that can be used to identify or contact a person uniquely and reliably or can be traced back to a specific individual. planning; privacy; risk assessment, Laws and Regulations Subscribe, Contact Us | This information can include a persons name, Social Security number, date and place of birth, biometric data, and other personal information that is linked or linkable to a specific individual. 2XXi:F>N #Xl42 s+s4f* l=@j+` tA( Keep personal information timely, accurate, and relevant to the purpose for which it was collected. PII stands for personally identifiable information. Start/Continue Identifying and Safeguarding Personally Identifiable Information (PII). %%EOF The Office of Personnel Management and Anthem breaches are examples of this, where millions of pieces of PII were taken and then used to attack other organizations like the IRS. Unauthorized recipients may fraudulently use the information. It is vital to protect PII and only collect the essential information. Thieves may use it to open new accounts, apply for loans, or make purchases in your name. Lead to identity theft which can be costly to both the individual and the government. The GDPR imposes significant fines for companies that violate its provisions, including up to 4% of a companys global annual revenue or 20 million (whichever is greater), whichever is greater. PHI is a valuable asset and is sold on the dark web for more money than any other data set, according to Ponemon Institute. PII is any information that can be used to identify a person, such as your name, address, date of birth, social security number, and so on. The purpose of this course is to identify what Personally Identifiable Information (PII) is and why it is important to protect it. In this module, you will learn about best practices for safeguarding personally identifiable information . 147 0 obj <> endobj [CDATA[/* >