Data Protection Flashcards

1
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

When did the Data Protection Act 2018 come into force?

A

May 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the principles detailed in the Data Protection Act 2018?

A

Lawfulness, Fairness and Transparency

Purpose Limitation

Data Minimisation

Accountability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is meant by Data Minimisation?

A

Personal data that is collected by an organisation should be only what is necessary for the specific purpose.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is meant by Purpose Limitation?

A

Personal data should be used only for the explicit purpose for which it was given.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What has been nominated by the UK to regulate and enforce GDPR?

A

The Information Commissioner’s Office (ICO)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the maximum fine which can be imposed for breaches in data protection in the EU?

A

The greater of €20 million, or 4% of the organisation’s annual global turnover.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Can the EU fine apply to UK businesses if they process personal data of EU residents?

A

Yes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the maximum fine which can be imposed for breaches in data protection in the UK? *

*Processing UK residents’ personal data

A

The greater of £17.5 million, or 4% of the organisation’s annual global turnover.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How long, after a personal data breach is discovered, must an organisation report it to the relevant supervisory body?

A

72 hours.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What must organisations ensure they have, to ensure data protection?

A

Robust data breach detection, investigation and internal reporting procedures in place.

They must keep a record of any personal data breaches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly