A systems administrator works for a local hospital and needs to ensure patient data is protected and secure. Which of the following data classifications should be used to secure patient data?
Choose an answer
Tap an option to check your answer.
Correct answer: Sensitive.
Why this is the answer
Patient data, such as medical records and personal health information (PHI), falls under the "Sensitive" data classification. This classification is used for information that requires protection against unauthorized access to prevent harm to individuals or organizations. Breaches of sensitive data can lead to legal penalties (e.g., HIPAA violations), reputational damage, and identity theft. "Private" is a similar but broader term often used interchangeably with sensitive, but "Sensitive" is a more precise classification in data security frameworks for data requiring specific protection. "Critical" data refers to information essential for an organization's operations, where its loss or unavailability would severely impact business continuity; while patient data is critical, "Sensitive" specifically addresses its confidentiality needs. "Public" data is information that can be freely shared without harm, which is the opposite of how patient data should be handled.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed