Level 1 - Data management Flashcards
What is the General Data Protection Regulations 2018?
• The General Data Protections Regulation 2018 governs the protection of personal data in the UK. It protects all personal data stored on computes or in organised paper filing systems.
• Came into effect May 2018
• The purpose of the Act is to control the way in which data is stored and handled and gives stronger rights to people who have data stored about them.
• The definition of personal data is ‘data which enables an individual to be identified from it.
• Stricter fines for data breaches – 20 million euros or 4% of global turnover of the company
• Breaches must be reported to the Information Commissioners Office (ICO) within 72 hours
Principles of the Act are that the information held must be:
- Secure
- Fairly and lawfully processed for relevant purpose
- Accurate and up to date
- Not kept longer than is necessary
- Not given to third parties
- Disposed of securely
- Processed in line with the data subject’s rights
• Individuals must “opt in” to receive marketing
What is the Freedom of Information Act (2000):
• Gives individuals the rights to access information held by public bodies.
• Public bodies are required to issue information held on individuals within 20 days of request.
How do you manage data?
• Collect - email
• Collate - job
• Label – job no., date etc.
• Store – in job folder in Google Drive
• Retrieve and share.
N1. What document and data control systems do you employ on your projects?
• Google Drive.
Encrypted, requires passwords
N2. What is the Statutory Requirement for Data Management?
• The Data Protection Act 2018.
• Freedom of Information Act 2000.
• It covers the collection, storage and processing of data and the rights for individuals to obtain copies of data about themselves.
N3. What is the Data Protection Act 1995?
• It gives individuals the right to know what information is held about them, and provides a framework to ensure that personal information is handled properly.
N4. What is the Freedom of Information Act 2000?
• It creates a public right of access to information held by authorities.
• Allows access to official information.
• Allows individuals/organisations the right to request information held by a public authority.
What are the rights of the individual within the GDPR 2018?
The right to be informed
The right of access
The right to rectification
The right to erasure
The right to restrict processing
The right to data portability
The right to object
Rights in relation to automated decision making and profiling.