← All LEIN Flashcard Decks

Data Security & Privacy Protocols Flashcards

7 cards from real LEIN practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Data Security & Privacy Protocols flashcards as text
  1. Which of the following is the correct procedure when a LEIN operator suspects they are responding to a 'social engineering' attempt to obtain LEIN data over the phone?

    Answer: Refuse to provide any LEIN data and report the incident to the TAC

    Operators must refuse to release LEIN data based on unverified phone requests and report suspected social engineering attempts to the TAC.

  2. Under LEIN security protocols, mobile devices used to access LEIN data must:

    Answer: Meet FBI CJIS Security Policy requirements including encryption and remote-wipe capability

    Mobile devices accessing LEIN must comply with FBI CJIS Security Policy, which mandates encryption, remote wipe, and other security controls.

  3. A subject challenges the accuracy of a criminal history record obtained through LEIN. Under applicable law and policy, the subject's challenge should be directed to:

    Answer: The agency that originally entered the record and/or the state repository maintaining it

    Challenges to CHRI accuracy are directed to the originating agency or state repository, which are responsible for the accuracy of their entries.

  4. When conducting a LEIN query during a traffic stop, an officer's in-car terminal displays a 'system unavailable' message. The correct protocol is to:

    Answer: Contact dispatch to run the query through an alternate terminal and proceed based on the result

    When a terminal is unavailable, dispatch can run the query through an alternate terminal, ensuring the officer still has access to necessary information.

  5. Under LEIN and CJIS policies, which of the following individuals is NOT required to complete LEIN security awareness training?

    Answer: A contracted IT vendor who maintains the LEIN terminal hardware but has no system access

    Contracted personnel who maintain hardware but have no logical or physical access to CJI are not required to complete CJIS security awareness training.

  6. The LEIN 'hit confirmation' requirement before taking enforcement action on a stolen property hit is designed primarily to:

    Answer: Prevent wrongful enforcement actions based on records that may be outdated or entered in error

    Hit confirmation protects individuals from wrongful detention or arrest by ensuring the record is still active and valid before enforcement action is taken.

  7. An agency wants to provide LEIN query access to a neighboring municipality's officers on a temporary basis during a joint task force operation. This requires:

    Answer: A formal written agreement and individual user account provisioning per LEIN policy

    Temporary access for outside personnel requires a formal written agreement and individual account creation to maintain audit accountability.