Data Management Flashcards

1
Q

What are the principles of Data Protection Act (known as GDPR in the EU)

A

Data must be processed lawfully, fairly and in a transparent manner, collected for specified and legitimate purposes, limited to what is necessary, processed in an appropriate manner, not kept for longer than necessary, accountability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the rights of individuals under the Data Protection Act?

A
  1. Right to be informed
  2. Right of access
  3. Right to rectification
  4. Right to erasure
  5. Right to restrict processing
  6. Right to data portability (to use for their own purposes)
  7. Right to object
  8. Rights to automated decision making and profiling (as undertaken by insurance companies)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How do you ensure data security?

A

Password protection, firewalls, regular back-ups, anti-virus software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the Data Protection Act 2018?

A

The Data Protection Act 2018 implements GDPR 2016 into UK law and aims to create a single data protection regime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What would you do if there was a data security breach?

A

Inform ICO within 72 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the penalty for breaching the Data Protection Act?

A

4% of global turnover or £17.5 million

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the Freedom of Information Act 2000?

A

Allows individuals the right to access info held by a public body, must be supplied within 20 days

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the elements of an NDA?

A

Identify parties, definition of what is confidential, scope of confidentiality, length of term agreement, signatories

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does Triangulation mean?

A

To verify data from a third party source.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the ICO

A

Information Commissioners Office

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Any RICS guidance in relation to data and data handling?

A

There is proposed a RICS Professional Standard on Data Handling and Prevention of Cybercrime.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How do firewalls work?

A
  • A firewall is a system that provides security by filtering incoming and outgoing network traffic based on an organisations previously established security policies. The purpose of a firewall is to stop unwanted network communications.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is encryption of data?

A
  • Data encryption is a security method where information is encoded and can only be accessed or decrypted by a user with the correct encryption key.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a Single Sign on?

A
  • An identity management method which enables users to log in to multiple applications and websites with one set of credentials.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

If two separate departments within your firm were working for two rival companies, how would you ensure client sensitive data was managed?

A
  • Make the clients aware of the risk including the conflict of interest
  • Letter of informed consent
  • Receive instruction letter to continue
  • State that there would be exclusivity of staff
  • NDA’s
  • State the staff managing each client would be based in different working locations
  • There would be single lines of communication to the client
  • Secure storage of files with password protection
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the meaning of a non-disclosure agreement?

A
  • Non-disclosure agreements are legal contracts agreeing not to disclose confidential information that has been shared as a necessary part of conducting business.
  • The purpose of NDA’s is to ensure that certain information will remain confidential.
  • They are often used when confidential, sensitive or intellectual property information is being shared to prevent this information being used by competitors.
15
Q

What are the benefits of using an SSO?

A
  • Increases security – by adding a two-factor authentication when signing in.
  • Improves identity protection
  • Saves employees time by signing on once to multiple apps
  • Strengthen cybersecurity – as there is no need to physically store multiple passwords.