Data Management Flashcards

1
Q

How have you advised on data storage system?

A

Advised my line manager that the current system for deadlines is inadequate.
1. Needed a Centralised schedule to be within the internal data storage system
2. Data was sensitive, advised that needs to have access control features. This ensures compliance with GDPR and data protection to safeguard confidential client details.
3. Having a centralised system demonstrated how I could be more efficient advising the client on appeals improving client communication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

How have you advised on business filling systems?

A

Within the data storage system I advised on implementing a schedule for the deadlines.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How have you benchmarked from analysed historic data?

A

Able to review historic rental data to advise the client on rating proposals
In addition, with finding rental comparables for rent reviews and lease renewals

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How have you advised on security of data?

A

Glasshouse Street for example
Confidential T/O amounts for that unit
Microsoft Office 365 Encryption

Password protected files when sending schedules to clients

I have advised on firewalls, adding barriers for external cyber threats

I have advised on signing NDAs when clients are uneasy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How have you complied with client’s data security requirements?

A

Signing an NDA
Legally enforceable contract between two parties relating to sensitive information
Creates a confidential relationship between a person who has sensitive information and a person who has access to that information
Any breach - the part can enforce legal action and seek damages

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How have you incorporated data research into complex reasoned advice to clients?

A

2024 Autumn Budget
New UBRs - Estimated liabilities for following year
Rate Relief having to provide advice updating the schedules reflecting this.
Advice to allow businesses to forecast and for those waiting to be assessed
Advising the client they have not gone over the £315k threshold

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How have you presented conclusions to clients from data research and analysis?

A
  1. Collate & Analyse the Data
  2. Structure my findings in a report / spreadsheet
  3. Present advice and conclusions
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Data storage system - what kind of schedule did you advise should be implemented?

A

Excel schedule
Simple and straightforward to use
Can be password protected to protect sensitive information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Data Storage System - What did you perceive the benefits of implementing the schedule to be?

A

Organisational efficiency / Client Care
Better Communication
Data security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What access control features did you advise should be in place?

A

Discretionary access control (DAC)
My line manager can decide who has access
The schedule is also password protected
An option of a multiplier authentication to implement on the internal system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How do you ensure your accuracy when updating the schedule?

A

I ensure the data collected is accurate through a trusted source and cross checking the information using the triangulation method
I double check all the inputs and get a colleague to review
I keep track of changes
Restrictive permissions to ensure schedules will not be edited

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

2024 Autumn budget - What data did you gather and compile?

A

2024 Autumn Budget
New UBRs - Estimated liabilities for following year
Rate Relief having to provide advice on where rate relief is not eligible
Updating the schedules reflecting this

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How did you update their portfolios?

A

Added a new column
New input for the UBR
Excel formula to ensure accuracy and case of human error

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How did you provide the clients with the documents?

A

Password protected
Microsoft 365 Encryption service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How do you ensure information isn’t sent to the wrong client?

A

Verification process:
Cross check with internal contact sheet
Am very careful with automatic email fill

I standardise client file names
eg Client Name - Address - Subject

Ensure that the data is restrictive access only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

How is your firm compliant with UK GRDPR

A

Compliant with the individual rights to our clients.
Informed
Rectification
Object
Access
Restrict
Erasure
Disclosure
Automated decision making and business profiling

Article 5(1) is all about the principles relating to the storage of personal data:
1. Processed lawfully, fairly and in a transparent manner
Lawful bases include:
a) Consent - client gives me consent to process their personal data
b) Contract
c) Legal obligation - necessary to comply with law (HMRC)

Article 5 (2) requires that the “controller shall be responsible for, and be able to demonstrate, compliance with the principles”

17
Q

What are the individual UK GDPR rights

A

8 individual Rights under UK GDPR:
1. Right to be informed
2. Right of access
3. Right to rectification
4. Right to erasure
5. Right to restrict processing
6. Right to data portability (to use for their own purposes)
7. Right to object
8. Right to automated decision making and profiling (as undertaken by insurance companies)

18
Q

What is the UK GDPR and the Data Protection Act 2018

A

General Data Protection Regulation is covered by the DPA 2018
Aims to create a single data protection regime affecting businesses, and empower individuals to take control of how their data is used by third parties.
It gives people rights to be informed about how their personal information is used

19
Q

Key requirements for UK GDPR

A
  1. An obligation to conduct data protection impact assessments
  2. Individuals to have access to personal information
  3. A data controller decides how and why personal data is processed
  4. A principle of ‘data accountability’ Information commissioner’s office (ICO) how they comply with the regulations
  5. Data security breaches must be reported to the ICO within 72
  6. Fines up to 4% global turnover of the company or £17.5m (whichever is the greater)
  7. Policed by the ICO
20
Q

What is the act that gives individuals rights to access held by public bodies

A

Freedom of Information Act 2000
The public body must tell if information is held about them
Required to supply within 20 working days
It can charge for that provision

21
Q

What are the exemptions for releasing individual data held by a public body

A

Contray to the GDPR requirements
Would prejudice a criminal matter

22
Q

How can security of data be managed

A

Firewalls, encryption, cloud based systems and passwords
Regular backups off site
Anti virus software
NDAs

23
Q

What is copyright

A

Set of exclusive rights granted to the author or creator of any original work
These rights can be licensed, assigned or transferred
Form of intellectual property
Crown Copyright refers to all material created by the Government such as laws
Any information I use which is copyrighted must be acknowledged

24
Q

Data Protection Act 2018

A

This act makes provision about the processing of personal data.
Most processing of personal data is subject to the GDPR.