Data Management L1 Flashcards
1
Q
What are the benefits of a cloud based storage system (4)
A
- Information is backed up on securely encrypted servers
- Documents and folder systems can be synchronised
- Multiple users can access the same document at the same time
- Cloud systems are environmentally friendly
2
Q
What is the meaning of a non-disclosure agreement (2)
A
- Used to protect against the discloure or sharing of confidential information
- Clients usually ask recipients of confidential information to sign a NDO
3
Q
If two separate departments in your firm were working for rival companies how would you ensure sensitive data was managed (4)
A
- Conflict of interest
- Separate working locations
- NDAs
- Secure storage
4
Q
Who are the key persons outlined within GDPR
A
- Controller
- Processor
- Data protection officer
5
Q
What does a controller do
A
- Natural person or legal entity that determines the purpose and means of processing data (E.G. the employer would be the controller when looking at employee information)
6
Q
What does a processor do
A
- Process information on behalf of the controller e.g. call centres acting on behalf of clients
7
Q
What does a data protection officer do
A
- Leadership role required by EU GDPR, companies need one when processing information of EU citizens. Oversees data protection approach
8
Q
What are the 8 individual rights under GDPR
A
- Right to be informed
- Right of access
- Right of rectification
- Right to erasure
- Right to restrict processing
- Right to data portability
- Right to object
- Rights of automated decision making and profiling
9
Q
What does it mean to be GDPR compliant
A
- regulation that requires businesses to protect personal data and privacy of EU citizens for transactions that occur within an EU state
10
Q
What are the 7 principles of GDPR
A
- Lawfulness, fairness and transparency
- Purpose limitation
- Data minimisation
- Accuracy
- Storage limitation
- Integrity and confidentiality
- Accountability
11
Q
What things must companies put in place to ensure GDPR compliance (4)
A
- Raise awareness across your business
- Audit all personal data
- Update your privacy note
- Review procedures supporting individuals rights