Data Management Flashcards
Can you give me examples of different types of instrumental readings you use to collect data?
Protimeter Capacitence meter Borescope Carbide meter Hydrometer Thermographic imaging Core Test Phenolphthalein solution
what specific ISO procedure do C&W store their data and can you tell me about it?
C&W is - ISO 9001 certified (an independent 3rd party certification body audits C&W against the requirements) - this attracts clients and shows internal efficiency.
C&W are independently audited as part of a QA process. Under this ISO.
What is ISO 9001?
- Is a quality management standard
- Is audited
- Improve customer satisfaction
- Continual improvement
- Customer focus
- Having file structure and audits
- Quality management
what is ISO?
International Organisation for Standardization - 3rd party certification
GDPR16?
EU regulation covering data protection.
What is GDPR?
- Primary law surrounding data protection for European countries
- Consent is required for data use
- Sets standards for companies with how they handle the data of EU citizens
Can you tell me about the Data Protection Act 2018?
Data Protection Act 2018 is the UK implementation of the GDPR 16
Provides additional requirements over and above GDPR.
Covers both personal data and general data (complete data protection system)
However, empowers individuals to take additional control over how their data is used by 3rd parties
Will GDPR still apply after Brexit?
- Yes as part of Data Protection Act 2018
* Also if trading with EU countries
What must firms do to comply?
- Register annually with the Information Commissioners Office with an annual fee
Key Requirements of GDPR
Statute requirements:
ASSESSMENT
- obligation to conduct data protection impact assessments
RIGHTS TO ACCESS
- rights for individuals to have access to information on what personal data is held and to have it earased
DATA CONTROLLER
- desides how and why personal data is processed and is responsible for GDPR
ACCOUNTABILITY
- Must prove to the Info commissioners office how they comply
BREACHES
- must be reported to Info commissioners officer in 72hrs
FINES
- up to 20million euros or 4% turnover (whichever is greater).
DATA PROTECTION OFFICER
- companies employing > 250 employees are required to appoint data protection officer if their core activities include data procession e.g. C&W agency team who send out marketing materials.
Under GDPR16, how must companies store personal data? (STARTL)
- Secure
- Time (only kept for required time)
- Accurate
- Relevant
- Transparent
- Legitimate
Can you name the new 8 individual rights under GDPR?
And / or
What rights must companies grant individuals under the new GDPR?
RIPE ROAD
right to rectification
right to be informed
right to portability (use for their own purposes)
right to erasure
right to restrict processing
right to object
right to access
right to automated decision making and profiling (as undertaken by insurance companies).
How has GDPR affected you in your personal and professional life?
Professional:
* I deal with clients basic personal information for the purpose of invoicing
- I request the client fills in C&W standard ‘Customer Information Form’
- This form highlights that their information will be kept in accordance with GDPR16
- I am also aware that in May 2018 C&W wider business gave clients/perspective clients the ability to ‘opt-out’ of marketing information.
Personal:
Provided me with rights to how companies use my data
How do you comply with GDPR?
I ensure that any cleint data is correctly handled
- Store data in a secure way
- Be able to provide to client all information I have for them
- Remove data if requested
What would happen if there was a serious breach in GDPR?
- Notify the ISO in 72 hours