BCS Business Processes Flashcards
What is the computer misuse act?
The CM act protects personal data held by organisations from unauthorised access to computer material.
What is the data protection act?
The DPA protects the privacy of data held on individuals by businesses and other organisations. It makes sure the user has access to their data.
What is the GPDR?
General Data Protection Regulation
It protects European Union customer data, and hopes to reduce the severity of security breaches of personal data on the web.
What is ISO 27001?
International Standard for an ISMS (Information Security Management System)
What is an ISMS
A system for managing information security effectively.
Give me an example of how a business uses ISO 27001
regulating passwords for users
Controlling access to online sites
Managing the risk of supplies.
e.g. 3rd party providers
Give me an example of using the computer misuse act?
Hacking into someones device
unauthorised access to someones files
Give an example of using the data protection act
Having unauthorised access to confidential information.
What are the first 4 data protection principle acts?
- ) Personal data shall be processed fairly and lawfully
- ) Personal data must be obtained and processed for specified lawful purposes.
- ) Personal data shall be adequate, relevant and not excessive.
- ) Personal must be accurate and kept up to date.
What are the last 4 data protection principle acts?
- ) Personal data shall not be kept for any longer than is necessary.
- ) Personal data shall be processed in accordance with the rights of data subjects.
- ) Personal data must be kept safe and secure at all times.
- ) Personal data shall not be transferred outside the European area unless sufficient protection is ensured.
Who enforces the data protection act?
The Information Commissioner’s Office (ICO)
What is the difference between on premise and off premise?
On Premise: A solution hosted in house and usually supported by a third party.
Off Premise: A solution hosted by a third party and usually supported by a different third party.
Define Infrastructure as a service (IaaS)?
A service model that delivers computer infrastructure to support operations
Define Software as a serivce (Saas)?
A software distribution model in which a 3rd party provider hosts applications and makes them available to customers over the internet.
Define Platform as a service (PaaS)
A Cloud computing model in which a 3rd party provider delivers hardware and software tools to users over the internet.