Data Management Flashcards
Understanding of term Confidentiality?
Information subject to confidence and not shared without permission
Understanding of term Meta Data and why important?
Information about a specific piece of data eg Cost Plan document - info on the author, file size, date created, keywords
Afford same level of care as confidential - issuing redacted document, protect meta data
Understanding of Intellectual Property and Copyright?
Control ownership of original works
belongs to employer unless copyrighted
client granted licence for use
eg particular design
What is the Freedom of Information Act 2005?
Controls access to official information
public right of access
also publish through public authorities publication scheme
not just information since act came into effect
Benefits of cloud-based storage systems?
Backup
encrypted
accessibility managed
cheaper
convenient
environmentally friendly
multiple users
synchronization
Meaning of Non-Disclosure Agreement?
Prior to sharing:
requests NDA to protect:
confidential
sensitive
innovative
intellectual property
competitors
Two departments working for two rivals? (data protection!)
Client be aware
CoI
Instruction
Exclusivity
NDA
Separate locations
Secure storage and separate
Data Protection Act 2018?
Replaces 1998 legislation and manages personal data processing within organisations and government
Implementation of the EU General Data Protection Regulations (GDPR)
Key principles of the Act?
Used:
fairly
lawfully
transparently
only the purpose it is intended
kept no longer than necessary
secure and protected from unlawful use
loss
destruction
Person’s rights under the Act?
InAcUpErStPoOb
Key persons within GDPR?
Controller - natural entity that determines purpose eg employer
Processor - natural entity that processes for the controller eg call centre for employer
Data Protection Officer (DPO) - overseeing the approach, strategy, implementation
The 8 individual rights under GDPR?
As the Act acronym above, plus:
automated decision making
profiling; D,I,teamworking
How you manage to ensure compliance?
NDA - not divulge
Encrypted servers
Cyber security
Client permission for sharing
How companies ensure compliance generally?
Only keep what needed
keep person informed and why using
keep secure
keep info up to date