Data Management Flashcards

1
Q

What are the 8 individual Rights under GDPR?

A

I- Right to be Informed
A- Right of access
R- Right to rectification
E- Right to Erase
R- Right to restrict processing
D- Right to data portability (use for their own purposes)
O- Right to object
Right to automated decision making and profiling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Tell me more about a Non Disclosure Agreement

A

Legally enforceable contract between 2 parties relating to sensitive info. Agreement will create a confidential relationship between a person who has sensitive info and a person who has access to that info. Party that was harmed by the breach of NDA can take legal action to enforce the agreement and seek damages for any losses that were incurred.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What type of data security technologies are there?

A

Disk Encryption
Regular backups off-site
Cloud storage
Password protection and use of anti-virus software protection
Firewall and disaster recovery procedures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What types of tasks would you complete on Excel?

A

Analsying comparable sales data, data analysis e.g. pivot tables, charts and graphs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What makes information sensitive?

A

Confidentiality- Personal data, financial details, propriety info
Privacy concerns- personal safety risk
Commercial or competitive value- Business info that could harm an organisation’s position or operations if leaked.
Security risk- passwords, sensitive gov or military info

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What principles are outlined in the UK GDPR Article 5(1)?

A

Processed lawfully and in a transparent manner.
Collected for specified and legitimate purposes.
Accurate and up to date (inaccuracies should deleted or rectified ASAP).
Kept in a way that the subject should not be identifiable for longer than necessary.
Processed to ensure security of data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What happens to password-protected documents when you leave the company?

A

Password protected documents will be created and run by the IT department. They’ll give you the password which you will not be able to change. If you leave, then the IT department can provide details of the password if the document is needed by others.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How did you verify the information from your comps?

A

Spoke to the letting agents and if possible the tenants agent in order to verify the information I was being told. Would assume they are not lying as they are RICS professionals who should be following the code of conduct.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What would you do if you accidentally send out personal details to another applicant?

A

Call/follow up email telling them to delete the information without opening it, inform the LSH Data Protection Office (who may inform ICO within 72 hours), let the person whose data was breached know

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How do you ensure you keep client’s data secure?

A

By following the Data Protection Act 2018

LSH have password protected computers with an encrypted VPN.

I also ensure I do not leave any papers on my desk overnight.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is an EMP?

A

Estate Management Plam

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does Dual Authentication mean?

A

Dual authentication (or two-factor authentication, 2FA) requires two verification methods for added security. Typically:
-Something you know: like a password.
-Something you have: like a phone or security code.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the Data Protection Act 2018?

A

-UK’s implementation of the General Data Protection Regulation 2016 (GDPR)
-It aims to create a single data protection regime affecting businesses, and empower individuals to take control of how their data is used by third parties.
-It gives people the right to be informed about how their personal information is used.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is GDPR?

A

-General data protection regulation
-Relates to personal data
-Aims to create a single data protection regime for anyone doing business in the EU and to empower individuals to take control of how their data is used by third parties
-Gives people stronger rights to be informed about how their personal information is used

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How has your firm changed their data management practices to comply with GDPR?

A

-Conducted data protection impact assessments i.e. evaluated risks associated with holding information about individuals
-Ensure data accountability through the appointment of a named data controller
-Contacted individuals who were on distribution lists to confirm that they wanted to be contacted
-Trained staff
-Ensured correct firewalls were in place to ensure appropriate security of personal data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the Freedom of Information Act 2000?

A

Gives individuals the right of access to information held by public bodies.

17
Q

What does the Freedom of Information Act 2000 require of public bodies?

A

-Public body must tell any individual requesting sight of information whether it holds it
-Normally the public body is required to supply it in 20 working days in the format requested
-It can charge for the provision of the information

18
Q

What are the elements of a Non-Disclosure Agreement (NDA)?

A

-Identification of the parties
-Definition of what is deemed to be confidential
-Scope of the confidentiality obligation by the receiving party
-The exclusions from confidential treatment
-The length of term of the agreement

19
Q

What do you understand by the term security of data?

A

Means ensuring that data is kept safe from corruption and that access to it is suitably controlled to ensure privacy and protection

20
Q

How can security of data be improved?

A

-Disk encryption - encrypting data on a secure hard disk drive
-Regular back ups off site
-Password protection
-Use of anti-virus software protection
-Firewalls and disaster recovery procedures

21
Q

What does copyright mean?

A

-A set of exclusive rights granted to the author or creator of any original work, including the right to copy
-These rights can be licensed, assigned or transferred
Form of intellectual property

22
Q

What does Crown Copyright cover?

A

All materials created and prepared by the Government, such as laws, public records, official press releases and OS mapping

23
Q

What are restrictive covenants?

A

-Agreement to restrict the use of land in some way for the benefit of other land users
-They are enforceable by successors as they run with the land

24
Q

What are the RICS Data Standards, 2018?

A

-Set of standards to support the capture, verification and sharing of data in a common format
-They address issues of digital data consistency

25
Q

What are the 8 Principles of Data Protection Act 2018

A

P- Processed Fairly & Lawfully
L- Not kept longer than necessary
A- Adequate and not excessive
C-Not transferred to countries without the same data security
A- Accurate & up to date
R- Relevant
D- Data subject’s rights
S-Kept Securely