Data management (1) Flashcards
1
Q
What are the key pieces of legislations and regulators?
A
-UK GDPR (introduced in January 2021
- Data Protection Act 2018
- ICO (Information Commissioner’s Office)
2
Q
What are the 7 principles of data protection law?
A
- lawfulness, fairness and transparency
- Purpose limitation
- Data minimisation
- Accuracy
- Storage limitation
- Integrity and confidentiality (security
- Accountability
3
Q
What is purpose limitation about?
A
If data (for example customer’s personal info) is collected for one purpose, it should not be used for anything else.
4
Q
Who is accountable of the protection of data in SW?
A
As a public body, SW have to appoint a DPO (Data Protection officer)
5
Q
What is the punishment for non-compliance?
A
ICO can fine up to 17.4 mil or 4 % of annual turnover.
6
Q
What rights do individuals have under the data protection legistlation?
A
- right to be informed about the intended use of my personal data
- right to access my personal data + any other info hold by an organisation
- right to have personal date rectified if incorrect
- right to request the removal of personal date aka right to be forgotten
- right to block the processing of my date
- right to data portability = reuse/ copy the data for my own purposes
7.right to object against the way the data is processed
(includes profiling by automated process which could have legal or other consequences)