9. Data Management Flashcards

1
Q

What is data management?

A

The practice of ingesting, processing, securely and storing an organisations data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is GDPR?

A

General Data Protection Regulation. This is a set of EU wide data protection rules. The UK also have a UK GDPR which mirrors EU GDPR but stands separate as as part of UK domestic law.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

When did GDPR come into affect?

A

25th May 2018.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are 7 examples of GDPR?

A

LADSPAI

Lawfulness, fairness and transparancy
Accuracy
Data minimisation
Storage limitation
Purpose limitation
Accountability
Integrity and confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the Data Protection Act 2018?

A

UK GDPR was brought into UK law as the Data Protection Act 2018.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the importance of the Data Protection Act 2018?

A

The Act compels individuals to take control of their personal data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the key principals of the Data Protection Act 2018?

A

Lawfulness, fairness and transparency
Purpose limitation
Data minimisation
Accuracy
Store limitation
Integrity and confidentiality
Accountability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are a persons rights under the Data Protection Act 2018?

A

Under the Act, people have the right to:

  • To be informed about how their data is being used.
  • The right to access their data.
  • The right to have incorrect information updated.
  • To have their data erased.
  • To object to the use of their data.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the maximum fine and how is this calculated?

A

£17.5m or 4% of the total annual turnover of the proceeding year, whichever is higher.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Give me an example of how you process confidential information?

A
  • Password protection
  • Discuss with only those who need to know
  • Mark any papers/information as confidential and shred before disposal
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Give me an example of how you ensure that data is kept securely?

A
  • Password protection
  • Multi factor authentication
  • Be wary of suspicious emails and report these to IT team
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How does your company ensure compliance with the Data Protection legislation generally?

A

Only use data which is needed to perform day to day operations.
All data should be held securely.
Information that is no longer required is deleted.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What difference sources of information do you use in your day-to-day surveying?

A

RICS Guidance Notes
Contract Documentation
Previous Tenders
Valuation Data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is ISO 9001?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are the requirements for ISO 9001?

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Who does the Freedom of Information Act apply to?

A

Public right of access to information held by public authorities

17
Q

Who oversees information rights in the UK?

A

ICO - International Commissioners Office

18
Q

What is a project extranet?

A

Essentially a system that allows individuals outside the company to view an online platform

19
Q

Why do you keep company data for 12 years?

A

This is a requirement under PII.

Contracts under deed are to be kept for a minimum of 12 years.
Contracts under hand are to be kept for a minimum of 6 years.

20
Q

What are the breaches under GDPR?

A

DDA

Disclosure
Destruction
Alteration

21
Q

What is the process if there is a data breach?

A

Report certain personal data breaches to relevant supervisory authority. This must be done within 72 hours of breach where feasible.

22
Q

What kind of information is sensitive information?

A

Health records
Financial information
Address
Educational records

23
Q

What is copyright?

A

This is an intellectual property rightly assigned automatically to the creator.