Data Management Flashcards
What is the UK General Data Protection Regulation (2020) and Data Protection Act 2018
UK GDPR is supplemented by Data Protection Act 2018 (this replaces Data Protection Act 1998).
It gives people right to be informed about how their personal information is used.
What is a Data Controller?
Decide how and why personal data is processed and is directly responsible for GDPR.
What are the principles of UK GDPR?
- Lawfulness, fairness and transparency.
- Purpose limitation.
- Data minimisation.
- Accuracy.
- Storage limitation.
- Integrity and confidentiality (security)
- Accountability.
What are the 8 Individual Rights under GDPR?
- Be informed
- Access
- Rectification
- Erasure
- Restrict processing
- Data portability (use data for their own purposes)
- Object
- Rights to automated decision making and profiling (as undertaken by insurance companies).
What is the Freedom of Information Act 2000
Gives individuals the right to access information held by public bodies.
* Public body must tell individual requesting the data whether it holds it
* Public body must supply data in 20 working days in the format requested.
* It can charge for the provision of the information.
Are you aware of any RICS guidance relating to data?
‘Data Handling and Prevention of Cybercrime’ consultation
Who is the Data Protection Officer at your company?
GM
Is breaching GDPR a criminal or civil offence?
Criminal offence
What is Data Accountability?
Ensures organisations prove to the Information Commissioners Office (ICO) that they comply with new regs.
What is the fine for a data breach?
4% global turnover of the company or £17.5m (whichever is greater)