Data Management Flashcards

1
Q

How do you handle data

A

1) inform client of how it is being stored
2) Password protect and encrypt
3) Ensure email’s only copy in relevant parties
4) Only transfer data with express permission
5) Correctly label data
6) Don’t leave paperwork on desk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What do you do if data is breached

A

Inform Data Protection Officer within 72 hours describing the nature, type of breach, what it relates to likely consequences

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What act allows the disclosure of public body information

A

Freedom of information act 2000

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why can’t rental evidence be handed over using FOI

A

It would prejudice a commercial interest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What do you do if someone requested information

A

Forward onto FOI inbox where the Information Law and Disclosure team will respond

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the latest regulations on data protection?

A

General Data Protection Regulations 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What was the aim of GDPR?

A

To give individuals greater control of their personal data and to ensure uniformity in the EU

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Who must all firms hire under GDPR?

A

Data protection officer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is personal data?

A

Personal data means any information relating to an identifiable person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What procedures do you undertake when handling data?

A

1) Inform client of how it is being stored
2) Password protect and encrypt
3) Ensure email’s only copy in relevant parties
4) Only transfer data with express permission
5) Correctly label data
6) Don’t leave paperwork on desk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What would you do if data has been breached?

A

Inform Data Protection Officer within 72 hours describing the nature, type of breach, what it relates to likely consequences

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What act allows the disclosure of public body information?

A

Freedom of information act 2000 and Commissioners for Revenue and Customs Act 2005 (CRCA) section 17-20

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Who does the Freedom of Information Act apply to?

A

Public organisations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

When can data be withheld under FOI

A

Where the release of information is said to compromise or damage a personal or commercial interest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What Act allows the VOA to prevent the disclosure of information

A

Freedom of information act 2000 and Commissioners for Revenue and Customs Act 2005 (CRCA) Section 17-20

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What does EDRM stand for

A

Electronic Data and Record Management

17
Q

What did the commission of revenue and customs act provide

A

Provision for the use of information and the specific disclosure under certain circumstances

18
Q

What are the 6 principles of GDPR

A
  • Lawfulness, fairness and transparency
  • Used for specified explicit purposes
  • Data minimisation by collecting what is necessary
  • Accurate up to date info
  • Kept for necessary period
  • Kept in a way that ensures security and protection
19
Q

Why can rental information be divulged at VT

A

Under section 17 of the CRCA 2005 it is classed as in the course of Civil Proceedings and is therefore required to further progress the case. It is also stated in statute under section 17 of the Valuation Tribunal for England (Council Tax and Non domestic rates appeals) Act

20
Q

What did the Data Protection Act 2018 enforce

A

The General Data Protection Regulations 2018

21
Q

What rights are given under GDPR/ Data Protection Act (2018)

A
  • Right to be informed
  • Right of access
  • Right to rectification
  • Right to erasure
  • Right to restrict processing
  • Right to data portability
  • Right to object
  • Rights in relation to automated decision making and profiling
22
Q

How would you report a data breach

A
  • Inform data manager within 72 hours
  • Describe breach
  • What data concerned
  • What likely consequences
  • How impact can be mitigated
23
Q

What does the Freedom of Information Act allow individuals to do

A

Request information from Public Bodies on data they may hold

24
Q

How can a FOI request be made?

A
  • letter
  • email
  • social media
  • online form
  • fax

In the VOA any request is passed onto our FOI inbox in order for it to be dealt with

25
Q

Under what grounds can Public Bodies refuse disclosure of information under FOI

A
  • Threat to national security
  • Prejudice commercial interest of the public
  • Prejudice public affairs
  • Includes personal information
  • Seemed to be excessive
26
Q

On what basis can information be disclosed under section 17 of the CRCA 2005

A
  • To enable HMRC to carry out its functions.
  • Where the person has given their consent
  • Where confidentiality is overridden by legislation
  • Where HMRC receives a court order to disclose information
  • Where disclosure is made in order to prosecute.
  • Where disclosure is in the public interest.
  • Disclosure to the relevant prosecuting authorities.
27
Q

What are the security classifications for the government?

A

OFFICIAL- Typically given to most personal data which will need to be protected.

OFFICIAL SENSETIVE- excludes certain internal individuals from access

SECRET- which is very sensitive and could potentially cause harm to national security

TOP SECRET- information is the top level of security in which a breach could put many people’s lives at risk.

28
Q

What is GDPR consent and what are the 5 rules?

A

Accepting for a company to store and use personal information.

Consent can be given under 5 requirements:

1) Consent must be freely given
2) Consent must be specifically given
3) Consent must be made with correct information
4) Consent must be unambiguous
5) Consent can be revoked

29
Q

What is a record and what is a field?

A

Record is a single piece of data whilst a field is a group of records

30
Q

Have you ever used a .CSV file?

A

Yes exporting rental data onto an excel spreadsheet. I understand .CSV exports data from one application to another