← All CLM Flashcard Decks

Legal Technology & Information Management Flashcards

7 cards from real CLM practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Legal Technology & Information Management flashcards as text
  1. Which cloud computing model is most commonly recommended for law firms handling sensitive client data due to its dedicated infrastructure?

    Answer: Private cloud

    A private cloud provides dedicated infrastructure for a single organization, offering greater control and security for sensitive legal client data.

  2. The EDRM (Electronic Discovery Reference Model) framework outlines the e-discovery process in what general order?

    Answer: Information Governance → Identify → Preserve → Collect → Process → Review → Analyze → Produce → Present

    The EDRM framework flows from Information Governance through Identification, Preservation, Collection, Processing, Review, Analysis, Production, and Presentation.

  3. Which of the following best describes a Document Management System (DMS) used in law firms?

    Answer: A system for organizing, storing, tracking, and retrieving legal documents

    A DMS organizes, stores, tracks versions, and retrieves legal documents, providing a centralized repository for a firm's document library.

  4. Under HIPAA, law firms that handle protected health information (PHI) on behalf of healthcare clients are classified as:

    Answer: Business associates

    Law firms handling PHI on behalf of healthcare covered entities are classified as business associates under HIPAA and must sign a Business Associate Agreement (BAA).

  5. What is the purpose of a Records Retention Schedule in a law firm?

    Answer: To define how long different categories of records must be kept and when they can be destroyed

    A Records Retention Schedule identifies categories of records, the required retention period (based on legal, regulatory, and business needs), and the authorized destruction date.

  6. Which cybersecurity framework is most widely referenced for assessing and improving law firm information security programs?

    Answer: NIST Cybersecurity Framework

    The NIST Cybersecurity Framework provides standards, guidelines, and best practices for managing cybersecurity risk and is widely referenced by law firms.

  7. A law firm's IT acceptable use policy (AUP) primarily serves to:

    Answer: Define rules for appropriate use of firm technology resources and establish user responsibilities

    An AUP defines the rules and restrictions for acceptable use of a firm's technology assets and clarifies employee responsibilities to protect firm information.