Data Management Flashcards
1
Q
What is the legislation relating to Data Protection?
A
- UK General Data Protection Regulation, 2016
- Data Protection Act, 2018
2
Q
What is the aim of the Data Protection legislation?
A
It aims to create a single data protection regime affecting businesses, and empoer individuals to take control of how their data is used by third parties.
3
Q
What is the key requirments of the Data Protection legislation?
A
- Obligation to conduct data protection impact assessments for high risk holding of data.
- New rights for individuals to have access to infomation on what personal data is held and to have it erased.
- A data controller decides how and why personal data is processed and is directly responsible for GDPR .
- A new principle of ‘data accountability’ ensuring that organisations can prove to the infomation Commissioner’s Office (ICO) how they comply with the new regulations.
- Data security breaches need to be reported to ICO within 72 hours where there is a loss of personal data and a risk of harm to individuals.
- Fines up to 4% global T/O or £17.5million (whatever is greater).
- Policed by the ICO.