Match each regulatory compliance framework or legal mandate on the left with its primary data governance scope and organizational requirement on the right.
- Sarbanes-Oxley Act (SOX)Regulates internal accounting controls and corporate financial reporting transparency for publicly traded organizations.
- Health Insurance Portability and Accountability Act (HIPAA)Mandates administrative, physical, and technical safeguards for Electronic Protected Health Information (ePHI) held by covered entities.
- Payment Card Industry Data Security Standard (PCI-DSS)Requires contractual technical and operational controls for entities that store, process, or transmit Cardholder Data (CHD).
- General Data Protection Regulation (GDPR)Grants strict personal privacy rights—such as the right to erasure—and mandates data protection compliance for processing personal data of EU residents.
Cevap
Sarbanes-Oxley Act (SOX) matches internal financial and accounting controls; HIPAA matches administrative, physical, and technical safeguards for ePHI; PCI-DSS matches operational security controls for processing cardholder data (CHD); GDPR matches data privacy rights and regulations concerning the processing of personal data.
Each mandate addresses distinct legal and regulatory objectives: SOX ensures financial statement integrity; HIPAA secures protected health information (ePHI); PCI-DSS safeguards credit card numbers and authentication data (CHD); GDPR safeguards individual data privacy rights across the European Union.
Adım Adım Çözüm
Anahtar Kavram
Regulatory Compliance and Legal Requirements Management