Ethics and Data Protection Flashcards

1
Q

What is stated in Article 2 GDPR?

A
  1. Material Scope
  2. Processing of personal data
  3. Exception: household activity
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is stated in Article 3 GDPR?

A

Establishment of a controller or a processor in the Union

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is stated in Article 4 GDPR?

A

Definitions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is personal data?

A

Any information relating to an identified or identifiable natural person (’data subject’) directly or indirectly

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is processing?

A

Any operation or set of operations which is performed on personal data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is profiling?

A

Use of personal data to evaluate certain personal aspects relating to a natural person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does the GDPR apply to?

A
  • Article 10 Data relating to criminal convictions and offences
  • Article 4 Personal data
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What are the special categories?

A
  1. Racial or ethnic origin
  2. Political opinions, religious or philosophical beliefs
  3. Trade Union Membership
  4. Genetic and/or biometric data processed for the purpose of identifying a person
  5. Health, sexual life or sexual orientation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

When do the special categories not apply?

A
  1. Explicit consent
  2. Made public by the data subject
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the principles related to processing of personal data in Article 5?

A
  1. Lawfulness, fairness, and transparency
  2. Purpose limitation
  3. Data minimization
  4. Data accuracy
  5. Storage limitation
  6. Integrity and confidentiality
  7. Accountability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

When is processing considered lawful?

A

When:

  1. Freely given
  2. Specific
  3. Informed
  4. Unambiguous
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does the purpose limitation ground include?

A

A purpose must be:

  1. Specific
  2. Explicit
  3. Legitimate
  4. Not further processed that is incompatible with the current purpose
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What are the exceptions in Article 89?

A
  1. Public Interest
  2. Scientific or Historical Research purposes
  3. Statistical purposes
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What does the Data minimization ground tell?

A
  1. Adequate, relevant and limited
  2. Necessary in relevant to the purpose
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What does the Data accuracy ground tell?

A
  1. Accurate and kept up-to-date
  2. Erased or rectified without any delay if wrong
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What do we mean with the Integrity and Confidentiality ground?

A
  1. Appropriate security
  2. Protection against unauthorised or unlawful processing and against loss
  3. Technical and organisational measures for protection
17
Q

Who is accountable?

A

Controller

18
Q

How can we secure personal data according to Article 32?

A

Pseudonymisation and Encryption

19
Q

When do we require DPIA?

A

When a type of processing is likely to result in high risk to the rights of natural persons. It aims to assess the impact on protection of personal data.

20
Q

What is the first thing to do when a data breach occurs?

A

Notify victims without any delay

21
Q

When is a Data Protection Officer involved?

A
  1. Processing by public authority
  2. Systematic monitoring of the data subject
  3. Special categories of data