5.3 Legislation And Privacy Flashcards
What is data protection
About lookijg sfter the personal data of people
Organisations that collect personal data must…
- Only collect the data for a specific purpose
- Make sure the data is accurate
- Data that is not necessary for the specific purpose may not be collected
Data collection sources
3rd parties Cookies Paper registration CCTV Forms
What are the 6 reasons for law processing
- Consent
- Legal obligation
- Public tasks
- Contract
- Vital interests
- Legitimate interests
Consent
A person has agreed to their data being used
Contract
Processing is needed for a contract
Legal obligation
Processing the data is needed to meet the law
Vital interests
Processing is needed to protect someone’s life
Public task
For performing an official task
Legitimate interest
Their is a clear benefit to the usermor company
Data must be stored so that
- Data is kept accurate and up to date
- It is not kept longer than necessary
- It must not be transferred to other countries unless they can keep it protected
- Customers must be told of a data breach within 72 hours of it happening
Methods of securing data
- Using passwaords
- Security levels
- Encrypting data
- CCTV
- Guards
- 2 factor-authentication
Rights of the Data Protection Act (2018)
The right to view data stored about you organisations for free
You must consent to having marketing sent to you
The right to withdraw consent
The right to make changes to your data if it is inaccurate
The right to be forgotten
Penalties from Data Protection Act
In order of least to severe:
- issues warnings
- order company to comply
- 4% of company turnover
- €20 million
Privacy issues
Cookies and other data collection sources may be a reason to have concern because they don’t know what is happening to your data