concepts of data privacy Flashcards

1
Q

About people and our sense
of being in control of others
access to ourselves or to
information about ourselves
with others

A

privacy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Treatment of identifiable,
private information that has
been disclosed to others;

A

confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

privacy or confidentiality? state of being away from public attention

A

p

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

p or c, about individuals

A

p

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

p or c, state wherein info is kept secret

A

c

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

p or c, about info

A

c

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

p or c, personal choice

A

p

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

p or c, it is a right

A

p

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

p or c Restricts the public from
accessing personal date

A

p

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

p or c, professional obligation and agreement

A

c

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

p or c, Restricts unauthorized people
from accessing confidential
data

A

c

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

the most comprehensive of rights, and the right most valued by a free people

A

the right to be left alone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

try to enumerate the legal aspect of right of privacy

A

Protection from unreasonable intrusion upon one’s isolation

Protection from appropriation of one’s name or likeness

Protection from unreasonable publicity given to one’s private life

Protection from publicity that unreasonably places one in a false
light before the public

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

protection from ________ upon one’s __________-

A

Protection from unreasonable intrusion upon one’s isolation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

protection from _______ of one’s ___________

A

Protection from appropriation of one’s name or likeness

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

protection from ____________ given to one’s ________-

A

Protection from unreasonable publicity given to one’s private life

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

protection from ____________ that _______ places one in a ______ before the public

A

Protection from publicity that unreasonably places one in a false
light before the public

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

also known as ra 10173

A

data privacy act of 2012

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

also known as data privacy act of 2012

A

ra 10173

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

what year was Data privacy act acted into law

A

2012

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

when was national privacy commission formed?

A

march 2016

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Implementing
rules and
Regulations
(IRRs) was
published

A

august 2016

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

IRRs came into
effect
(compy with all
provisions
except
registration
requirments)

A

sep 9, 2016

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

when did DPA comply with registration requirements?

A

sep 9 2017

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

enumerate key roles in data privacy act

A
  • data subjects
  • personal information controller
  • personal information processor
  • data protection officer
  • National Privacy Commission
26
Q

Refers to an individual whose, sensitive personal, or privileged information is processed personal

A

data subjects

27
Q

– Controls the processing of personal data, or instructs another to process personal data on its behalf

A

personal information controller

28
Q

Organization or individual whom a personal information controller may outsource or instruct the processing of personal data pertaining to a data subject

A

personal information processor

29
Q

Responsible for the overall management of compliance to DPA

A

data protection officer

30
Q

Independent body mandated to administer and implement the DPA of 2012, and to monitor and ensure compliance of the country with international standards set for personal data protection

A

National Privacy Commission

31
Q

enumerate the rights of data subject

A

right to be informed
right to object
right to access
right to data portability
right to correct (rectification)
right to erasure or blocking
right to file a complaint
right to damages
transmissibility of right

32
Q

sec 34.a

A

right to be informed

33
Q

what section: right to be informed

A

sec 34.a

34
Q

what section: right to object

A

sec 34.b

35
Q

sec 34.b

A

right to object

36
Q

sec 34.c

A

right to access

37
Q

what section: right to access

A

sec 34.c

38
Q

what section: right to data portability

A

sec 36

39
Q

sec 36

A

right to data portability

40
Q

what section: right to correction (rectification)

A

sec 34.d

41
Q

sec 34.e

A

right to erasure or blocking

42
Q

what section: right to erasure or blocking

A

sec 34.e

43
Q

sec 34.a.2

A

right to file a complaint

44
Q

what section: right to file a complaint

A

sec 34.a.2

45
Q

what section: right to damages

A

sec 34.f

46
Q

sec 34. f

A

right to damages

47
Q

what section: transmissibility of rights

A

sec 35

48
Q

sec 35

A

transmissibility of rights

49
Q

refers to any information whether recorded in a material form or not, from which the identity of an individual is apparent or can be reasonably and directly ascertained by the entity holding the information, or when put together with other information would directly and certainly identify an individual.

A

personal information

50
Q

mnemonics for personal data cycle

A

A - Acquisition
S - Storage
U - Use
T - Transfer
D - Detruction

51
Q

retention/disposal of personal data lifecycle should be based on?

A
  1. Law
  2. Industry best pratice
  3. Business need
52
Q

Transparency?

A

the consent regime

53
Q

the consent regime?

A

transparency

54
Q

A data subject must be aware of the nature, purpose, and extent of the
processing of his or her personal data, including the risks and safeguards involved, the identity of personal information controller, his or her rights as a data subject, and how these can be exercised.

A

principle of transparency

55
Q

The processing of information shall be compatible with a declared and
specified purpose, which must not be contrary to law, morals, or public policy

A

principle of legitimate purpose

56
Q

The processing of information shall be adequate, relevant, suitable,
necessary, and not excessive in relation to a declared and specified purpose.

A

principle of proportionality

57
Q

enumerate the 3 principles

A

principle of transparency
principle of legitimate purpose
principle of proportionality

58
Q

what are the five pillars of compliance?

A
  1. commit to comply: appoint a data protection officer
  2. know your risk: conduct a priacy impact assesment
  3. be accountable: create your won privacy management program or privacy manuals
  4. demonstrate your compliace: implement your privacy and data protections measure
  5. be prepared for breach regularly exercise you: regularly exercise your breach reporting procedrues
59
Q

who said na data is more important than money

A

si dondi mapa

60
Q

who said that competitors can copy ur products eklabush churvaness

A

damian mapa

61
Q
A