4.1 UK Legislation Flashcards

1
Q

What year was the computer misuse act

A

1990

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the computer misuse act 1990

A

Attempts to stop and punish those who use computers inappropriately. Breaking the principles can result in fines and jail sentences if proved it was done on purpose.
Principles:
No unauthorised access to data
No unauthorised access to data that could be used for further illegal activities
No unauthorised modification of data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What year was the freedom of information act

A

2000

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the freedom of information act

A

Allows people to request public authorities to release information
A request must be formally submitted in a letter or emails no a response is required within 20 days.
Requests can be denied if processing power is too expensive or if it involves sensitive information.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What year is the regulations of investigatory powers act

A

2000

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the regulations of investigatory powers act

A

RIPA was introduced in a response to an increase in criminal and terrorist activity on the internet. It monitors online communication of suspected criminals.
If criminal activity is suspected by an individual it grants:
ISPs must provide access to the suspects online communication
Locked or encrypted data may be accessed
ISP could install surveillance to track the suspects online activity
Surveillance may take place physically
Access must be granted to all person information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What year is the copyright, designs and patents ac

A

1998

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the copyright, designs and patents act

A

Criminal offence to copy work that is not your own without the permission of the creator or the copyright holder, this refers to text, images, music videos or software.
The owners of the content have ownership of their work and control how it is used.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does the copyright, designs and patents act 1998 prohibit

A

Making copies of copyrighted material to sell to others
Importing and downloading illegally copied material
Distributing enough copyrighted material to have a noticeable effect on the copyright holder

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the information commissioners codes of practice

A

The ICI is the senior government in charge of the counties freedom of information requests and the protection of personal data.
They publish codes of practice about data protection and privacy topics for individuals and organisations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What year is the protection of freedoms act

A

2012

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the protection of freedoms act 2012

A

States how biometric data is stored handled and detected.
Created new regulations for CCTV and ANPR
The disclosure and barring service (DBS) to run background checks on anyone wanting to work with children or vulnerable people
Extends the freedom of information act 200 allowing for wider requests to be made

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What year is the privacy and electronic communication regulation

A

2003

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the privacy of electron communications regulations 2003

A

Regulates how organisations can communicate with individuals
It is an offence to directly contact an individual unless they have opted in to receive communication
Companies must clearly state who they are when contacting customer e.g. displaying phone numbers
They must explain how cookies are used on their website
Companies must only contact customers through communication channels that the customer has permitted

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Who is responsible for the privacy and electronic communication regulations 2003

A

ICO can fine companies that commit unsolicited communication up to £500,000. It is the customer who benefits and is protected by this regulation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What year is the equality act

A

2010

17
Q

What is the equality act 2010

A

Legally protects people from discrimination in the workplace.
Discrimination of Protected characteristics such as gender, race, religion, age and disability are punishable by legal action.
The aim of the at is to end discrimination in the workplace and open fair opportunities.
Information must be presented in a format accessible to all staff and employers.

18
Q

What year is the data protection act / GDPR

A

2018

19
Q

What is the data protection act

A

Protect the privacy of data for people in the EU which was matches by the UK. It protects the data of individuals stored on computers and processed by organisations

20
Q

How does the data protection act work

A

Each person who has data stored in know as a data subject.
An employee in an organisation is appointed as the data controller, who is responsible for registering with the ICO. The data controller must be clear with the ICO on what data they are collected, why it is being collected and what it is being used for.

21
Q

What are the six principles of the data protection act

A
  1. The data must be collected lawfully and processed fairly
  2. Collected data must only be used for the reasons specified
  3. Data must be relevant and not excessive
  4. Data must be accurate and up to date
  5. Data must not be stored for longer than necessary
  6. Data must be stored and processed securely
22
Q

Rights of the data subjects

A

Make subject access requests and recieve a copy of all data stored about them.
1. The data controller must be written to and told exactly what information is required
2. The administrative fee should be paid to the organisation if the request is excessive
3. The organisation must provide the requested information within 40 days
4. The individual must verify their identity using appropriate ID as only the data subject can request their data