Data Management Flashcards

1
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the Data Protection Act 2018?

A
  • UK’s implementation of the General Data Protection Regulation 2016 (GDPR)
  • Complete data protect system – as well as governing personal data covered by GDPR, it covers all other general data as previously covered by the 1998 Act
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is GDPR?

A
  • General data protection regulation
  • Relates to personal data
  • Aims to create a single data protection regime for anyone doing business in the EU and to empower individuals to take control of how their data is used by third parties
  • Gives people stronger rights to be informed about how their personal information is used
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

When did GDPR come into force?

A

25th May 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the key requirements under GDPR?

A
  • Obligation to conduction data protection impact assessments for high risk holding of data
  • New rights for individuals to have access to information on what personal data is held and to have it erased
  • A data controller decides how and why personal data is processed and is directly responsible for GDPR
  • ‘Data accountability’ ensuring that organisations can prove to the Information Commissioners Office (ICO) how they comply with the new regulations
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What happens if you breach GDPR? What is the penalty?

A
  • Data security breaches need to be reported to Information Commissioners Office (ICO) within 72 hours where there is a loss of personal data and a risk of harm to individuals
  • An increase in fines up to 4% global turnover of the company or €20m (whichever is the greater)
  • Policed by the ICO
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the 8 individual Rights under GDPR?

A

AIRER POA:

  1. Right of access
  2. Right to be informed
  3. Right to rectification
  4. Right to erasure
  5. Right to restrict processing
  6. Right to data portability (to use for their own purposes)
  7. Right to object
  8. Rights to automated decision making and profiling (as undertaken by insurance companies
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How has your firm changed their data management practices to comply with GDPR?

A
  • Conducted data protection impact assessments i.e. evaluated risks associated with holding information about individuals
  • Ensure data accountability through the appointment of a named data controller
  • Contacted individuals who were on distribution lists to confirm that they wanted to be contacted
  • Trained staff
  • Ensured correct firewalls were in place to ensure appropriate security of personal data
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Under GDPR, would you be able to transfer personal data you hold outside of the UK?

A

GDPR restricts transfers of personal data outside the European Economic Area (EEA), unless the rights of the individuals personal data is protected in another way

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the Freedom of Information Act 2000?

A

Gives individuals the right of access to information held by public bodies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does the Freedom of Information Act 2000 require of public bodies?

A
  • Public body must tell any individual requesting sight of information whether it holds it
  • Normally the public body is required to supply it in 20 working days in the format requested
  • It can charge for the provision of the information
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are the exemptions from the Freedom of Information Act 2000?

A
  • Contrary to the GDPR requirements
  • It would prejudice a criminal matter under investigation
  • It would prejudice a person’s/organisation’s commercial interest
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the elements of a Non-Disclosure Agreement (NDA)?

A
  • Identification of the parties
  • Definition of what is deemed to be confidential
  • Scope of the confidentiality obligation by the receiving party
  • The exclusions from confidential treatment
  • The length of term of the agreement
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What are automated valuation models (AVMs)?

A
  • Software systems which can provide property valuations using mathematical modelling combined with a database
  • They are most used for residential property
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What does copyright mean?

A
  • A set of exclusive rights granted to the author or creator of any original work, including the right to copy
  • These rights can be licensed, assigned or transferred
  • Form of intellectual property
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is a deed?

A

A legal document made under seal

17
Q

How can you prove ownership of land which is not registered with the Land Registry?

A

The Deeds will set out information about the ownership and details of a property

18
Q

What professional statement is the RICS planning on releasing relating to the encryption of data and use of cloud-based storage facilities?

A

Data Handling and Prevention of Cybercrime, 2020

19
Q

What will be contained in the professional statement on Data Handling and Prevention of Cybercrime , 2020?

A
  • Best practice and 24 mandatory obligations
  • Advise on matters such as encryption to protect data on portable devices, best practice when using cloud-based storage facilities (e.g. Dropbox, OneDrive and Google Drive) and ensure appropriate data handling policies are in place in the event of a data breach or malware attack
  • It will sit behind the legal requirements of the Data Protection Act 2018 in the UK