Data Management Flashcards

1
Q

What are the key requirements of Data protection act?

A

Conduct data protection impact assessment for high risk holding of data.

‘Data accountability’ businesses proving to ICO how they comply with regulations.

Have a ‘controller’ decides how and why personal data is processed and directly responsible for GDPR.

report breach to ICO in 72 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Why were the regulations consolidated?

A

Create a single data protection regime affecting businesses and empower individuals to learn how and why their data is processed by businesses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are your company’s compliance procedures?

A

All our data is in a secure filing system, only accessible by password protected computers.
When the information is no longer needed the data is removed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the key principles of GDPR?

A

Purpose limitation
Accountability
Integrity and Confidentiality
Data minimisation
Storage limitation
Accuracy
Lawfulness

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the individual rights of GDPR?

A
  1. Right to be informed.
  2. Right to access.
  3. Right to amend.
  4. Right to erase.
  5. Right to portability
  6. Right to restrict process
  7. Right to object.
  8. Right to automated decision making.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What databases have you used?

A

CoStar.
LandInsight.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the limitations of these databases?

A

Relies on third party information, need to check the information is correct

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the benefits of using a dataroom to share information?

A

Parties can easily send people information without information being lost as its circulated in emails.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What information was included in the dataroom?

A

Planning information.
Building specification.
Engineering drawings.
Legal documents.
Formal tender process documents

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How did you ensure the data was kept secure?

A

It was password protected for each individual user.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How do you ensure the information is kept up to date?

A

Verify data with parties involved in the transaction.

E.g. if unit was u/o, would ask in the future if the sale was completed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does it mean to be GDPR compliant?

A

Your business’s processes are in line with GDPR.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

If you collate information from various sources, how would you store this data to allow for easy analysis?

A

I would keep in our online filing system on a clearly name file in the appropriate project that it relates to.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How can you keep data stored securely?

A

On a filing system only accessible from our password protected computers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is copyright?

A

Exclusive rights granted to the producer of any of their own work. Form of IP.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the Freedom of Information Act 2000?

A

Gives individuals the right to access any information from public bodies.
Must give in 20 working days.

Unless contrary to GDPR requirements or prejudice criminal matter

17
Q

What is a non-disclosure agreement? What happens if you break one?

A

Legally binding, not allowed to talk about the subject with others.
Can be sued for damages.

18
Q

Key Principles of Data Protection Act

A

Act lawfully
Limit data for purpose
Remove data when finished
process data securely

19
Q

Data Protection Act Purpose

A

gives people right to be informed on how their data is processed