Data Management Flashcards
1
Q
What are the 7 key principals of the UK GDPR?
A
- Lawfulness, fairness and
transparency- Purpose limitation
- Data minimalisation
- Accuracy
- Storage limitation
- Integrity and confidentiality
- Accountability
2
Q
What are the 8 Individual Rights under UK GDPR?
A
- Right to be informed
- Right of access
- Right to rectification
- Right to erasure
- Right to restrict processing
- Right to data portability
- Right to object
- Right to automated decision making and profiling
3
Q
What is the aim of UK GDPR?
A
- To create a single data protection regime affecting businesses and empower individuals to take control of how their data is used by third parties
- It gives people the right to be informed about how their personal information is used
4
Q
What are the Key Requirements of UK GDPR?
A
- Conduct data protection impact assessments for high risk holding of data
- Data security breaches need to be reported to the Information Commissioners Office (ICO) within 72 hours of the breach
- Fines up to £17.5 million or up to 4% of companies global turnover - whichever is greater
- Policed by ICO
5
Q
What are the key principals of the Freedom of Information Act 2000
A
- Gives individuals the right of access to information held by public bodies
- The public body must tell any individual requesting sight if information whether it holds it
- Normally the public body is required to supply it in 20 working days in the format requested
- It can charge for the provision of information
6
Q
How does your firm ensure compliance with GDPR?
A
- By encrypting data on a secure hard disk drive
- Use of password protection and anti-virus software
- By regularly backing up data off site
- Use of firewalls and disaster recovery procedures