Data Management Flashcards
What is confidentiality?
Where information is provided in confidence and not shared without permission
What is a non disclosure agreement (NDA)?
Used to protect against the sharing of any confidential data
What is GDPR?
General Data Protection Regulation
What are the principles of GDPR? (7)
LS MAPS
- Lawfulness
- Security
- Minimum Data
- Accuracy
- Purpose Limitation
- Storage Limitation
- Accountability
What is Lawfulness, Fairness, and Transparency in GDPR?
You must process data legally, fairly, and in a clear way.
What is Purpose Limitation in GDPR?
Only collect data for specific purposes.
What is Data Minimisation in GDPR?
Only collect what you need. No more, no less.
What is Accuracy in GDPR?
To keep personal data accurate and up to date.
What is Storage Limitation in GDPR?
Don’t keep personal data longer than necessary.
What is Integrity and Confidentiality (Security) in GDPR?
Protect data from loss, damage, or unauthorised access.
What is Accountability in GDPR?
You are responsible for complying — and must be able to prove it.
What must companies put in place to comply with GDPR?
- Privacy Policy & Notices
- Legal Basis for Processing Data
- Consent Management
- Data Subject Rights Processes
- Data Protection Policies
- Data Security Measures
Why is it important to limit access to personal data?
To protects individuals’ privacy
How long does your company keep personal data?
For as long as reasonably necessary.
If we no longer need it, we will get rid of it.
What are the financial penalties for a data breach?
Less serious - Tier 1: Up to £10 million or 2% of annual turnover, whichever is higher
Serious - Tier 2: Up to £20 million or 4% of annual turnover, whichever is higher
What are the non-financial penalties for a data breach?
Warnings and bans
How does your company ensure data is stored securely?
Employs a comprehensive approach in line with GDPR
24/7 Security Operations Centre
Regular security assessments
What would you do if you left your laptop on the train?
Immediately report it to the data protection officer, HR and my line manager
What is the main legislation for Data Management?
Data Protection Act 2018
What are the 8 Individual Rights under GDPR?
- Right to Be Informed
- Right of Access
- Right to Rectification
- Right to erasure
- Right to restrict processing
- Right to data portability
- Right to object
- Right to not be subject to a decision based solely on automated processing
How do you verify your data source for comparables?
By confirming the transaction by calling the agent
What are the penalties for breaching an NDA?
Sued or be subject to financial damages
Who is the Data Controller in your company?
Lambert Smith Hampton (LSH) acts as a controller for the personal information
What is the Freedom of Information Act?
It entitles members of the public to request for information from public bodies.