Data Management Flashcards

1
Q

Principles of GDPR and DPA (6 Principles)

A

Information used lawfully, fairly and transparently.
Collected for specified, explicit and legitimate purpose.
Adequate, relevant and limited to necessity.
Accurate (kept up to date)
Kept no longer than necessary
Kept safe

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Individual Rights of GDPR and DPA (8 key points)

A

To be informed
To access
To rectification
To erasure
To restrict processing
To data portability
To object
To automated decision making & profiling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

GDPR and DPA Penalties

A

Fines (4% of annual global turnover or 20 million euros)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is ISO 9001:2015

A

Sets requirements on how firms should control data and documents relevant to the service they provide.
Sets requirements for a company’s Quality Management System (QMS), which is about the management of the entire enterprise and its operational processes.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What security measure do you have for storing electronic data?

A

Only available from internal intra net which is password protected.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What sources of data are available in your field of expertise?

A
  • Comparable sales data from MoveMachine, Rightmove Plus, Propvals etc.
  • SEPA flood maps.
  • Coal Mining maps from Coal Authority.
  • Radon maps
  • OS Maps
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the most appropriate way to store client information in house?

A
  • Password protected with encryption behind firewalls, if digitally stored
  • Lock and key in house or a secure storage facility offsite.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is GDPR?

A

It replaced the Data Protection Act 1998 and is a regulation in EU law. It gives citizens more control over their personal data and how it is used as well as improving security of stored data so that it is not freely shared with third parties without informed consent

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

When did GDPR come in to effect?

A

25th May 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What type of data cannot be stored or kept and should be shredded or professionally disposed of and why?

A

Personal data should be only stored for as necessary to process. Organisations must ensure data is deleted when no longer required to ensure it will not be inaccurate or out of date.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How do the recent changes in GDPR affect your day to day activities?

A

Our department has been relatively unaffected as our processes were appropriate under GDPR. However, I am aware that we have had to re-issue consent forms to ensure we are compliant when sending out mail shots to clients.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Are you required to keep certain documents for any length of time?

A

Yes files should be retained for a minimum of 6 years.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly