CHAPTER #13 DATA PROTECTION Flashcards
Data Subject:?
Natural Persons whose personal data is being collected/processed
Personal data?`
Personal Data:
Information of a Data Subject which is in possession of a Data Controller
and from which he can be identified.
>It includes Sensitive Personal Data.
>It does not include encrypted data.
Sensitive Personal Data?
It means data of access (i.e. usernames and passwords) which provides access
> to Financial information,
> Medical Records (including physical ,pshycological or mental health report)
> Biometric Data
> passprt
> Religious beliefs,ethnicity
Key Principles for Personal Data
Processing?
- Lawfulness, fairness and transparency
- Data minimisation.
- Purpose limitation
- Accuracy
- Security
- Storage limitation
- Accountability
Rights of Individuals regarding
Processing of Personal Data?
- Right to be informed
- Right of access to data
- Right to rectification of errors
- Right of erasure / Right to forgotton
- Right to object to processing and marketing
- Right to restrict processing
- Right to data portability
- Right to withdraw consent
- Right to complain to regulator authorities
define
Unauthorized Access:?\
Damage to Data:?
Unauthorized Access:
It means accessing data not available for general public, without authoriztion or violation of terms and conditon of authorization
Damage to Data:
it means unauthorized addition, deletion,
alteration of data or making it unavailable.
What is Critical Infrastructure and its consequences:?
it means those elements of infastructure (i.e, assets,facilities,network,systemor processes) whose loss may result in adverse impact on:
>availability or delivery of essential services and taking into account significant ecnomic or social impact.
> national security, national defence or functioning of state
GOVT May direct any public or private infastructure to be critical infastructure
Punishment for
Unauthorized access: of non critical infastructure?
Unauthorized copying or transmission of data
Damaging information system or data:
Unauthorized access: > upto 3 months AND OR Rs. 50,000 Unauthorized copying or transmission of data > upto 6 months + Rs. 100,000 Damaging information system or data: >2 Years + Rs. 500,000
Punishment of
Unauthorized access: of critical infastructure?
Unauthorized copying or transmission of data
Damaging information system or data:
What is Glorification of an offense and its punishment?
Unauthorized access: >3 Years AND/OR Rs. 1,000,000 (1M) Unauthorized copying or transmission of data >5 Years + Rs. 5,000,000 (5M) Damaging information system or data: >7 Years + Rs. 10,000,000 (10M) Glorification of an offense: >same as interference with critical infrastructure >7 years AND /OR 10,000,000 (10M)
Glorification of an offense?
Glorification(i.e, showing praise or clelbration ) of offence:
if someone prepare or spread information to GLORIFY a terrorist or offence of terrorism or activities of such prescribed person or organization
Punishment:
>imprisonment upto 7 Years AND/OR fine upto Rs. 10,000,000