Phishing
HIPAA Data Security
IT Best Practice
100

What is the purpose of phishing? 

What is... 

Stealing user credentials or other personal information. 

100

Electronic health data is called what?

What is... ePHI (electronic protected health information)
100

Should I drop in or use the IT Help Desk system?

What is... GIVA (Help Desk System). 

200

Who is targeted by phishing?

What is... 

-All Email Accounts

-Those with public facing emails

-Financial Services

-Medical Care Providers

200

Should you share your password with anyone?

What is...

NO! 

200

Can I access my facebook account from my work desktop/laptop?

What is... NO! 

Personal use of agency equipment is prohibited. 

300

Should you open an email attachment from a untrusted sender?

What is.. 

NO !!! 

300

Should a password be long and complex or short and easy?

What is... 

Long and Complex

300

True or False:

Portable equipment like laptops can be left in my car overnight so I don't forget it.

What is...

False. 

400

What are warning signs of a potential phishing email?

What is... 

-Urgency

-Unknown sender

-Misspelling / Grammar Errors

-Suspicious links and/or attachments

400

If you don't need health data should you access it? 

(I.E. What if you may potentially need information in the future?) 

What is... 

NO! If you don't need it now, you shouldn't access it. 

400

Can someone use their agency email in a personal manner? 

I.E. Getting someone to email your work email in regards to personal manners?

What is...

No, personal use of agency email is discouraged. 

500

An attachment from a phishing email may contain software or code designed to disrupt, damage, or gain unauthorized access... What is this called?

What is...

Malware! 

500

True or False?

Health data is tracked back to you.

What is... 

True!

500

True or False... 

Nicole from IT is way cooler than IT Director (TBD). 

What is... 

True ...?