Part 1 - Design Flashcards

1
Q

What must Trustees and administrators ensure that admin systems provide

A

🀍 Reliability
🀍 Flexibility
🀍 Security

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

List the basic system requirements for a DB Scheme

A

🀍 Production of letters and emails

🀍 Production of benefit statements

🀍 Data extracts for actuarial valuations and scheme accounts

🀍 Data extracts for HMRC returns and reports

🀍 Operation of a payroll facility and production of P60s for pensioners

🀍 Monitoring of work within the administration function (workflow)

🀍 Electronic scanning and storage of documents

🀍 Electronic transfer or submission of data between parties

🀍 Accuracy - ability to produce a warning message for members with special circumstances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How often does tPR suggest data quality should be reviewed?

A

On an annual basis

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the two types of pension data

A

🀍 Common data
🀍 Scheme-specific data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How long should pension schemes hold member data?

A

🀍 a minimum of six years after the member is no longer entitled to any benefit under the scheme

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

List the Common data items for all schemes:

A

🀍 NI Number
🩢 Surname
🀍 Forename/ Initial
🩢 Sex
🀍 Date of birth
🩢 Date started pensionable service/ policy/ contributions
🀍 Expected retirement date/ Target retirement date
🩢 Membership status
🀍 Last status event
🩢 Address
🀍 Postcode

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What three things should a computerised system provide?

A
  1. Reliability
  2. Flexibility
  3. Security
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Basic system requirements for DC schemes

A

🀍 Member details
🀍 Contributions and Units
🀍 Switching & Lifestyling
🀍 Charges
🀍 Calculations
🀍 Reporting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What acts govern Data protection?

A

The European Union General Data Protection Regulation (EU GDPR)

enacted in UK through Data Protection Act 2018 (DPA 18)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

When did the European Union General Data Protection Regulation (EU GDPR) come into effect?

A

25 May 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does DPA make provision for?

A

🀍 the regulation of the processing of personal data relating to individuals which includes:

  • obtaining
  • holding
  • use or disclosure
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is personal data?

A

🀍 any information relating to an identified or identifiable natural person

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How may the identification of an individual for personal data be done?

A

🀍 Directly: eg a name

🀍 Indirectly: eg a number that can be used to look up a name

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What identifiers may an individual be identified by?

A

🀍 IP address
🩢 Name
🀍 Address
🩢 NINO
🀍 Email address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What does β€˜special categories of personal data’ replace?

A

🀍 sensitive personal data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What can β€˜special categories of personal data β€˜ include

A

🀍 Health data
🀍 Sexual orientation

17
Q

What are the Six Data Protection principles

A

🀍 Lawfulness, fairness and transparency
🩢 Purpose limitation
🀍 Data minimisation
🩢 Accuracy
🀍 Storage limitation
🩢 Integrity and security

18
Q

What is the definition of a data β€˜controller’

A

🀍 Data controllers determine the purpose and means of processing data

🀍 The controller is responsible for demonstrating compliance with the data protection principles

19
Q

What is the definition of a data processor

A

🀍 Data processors process the data on behalf of the data controllers

20
Q

What is the right that members have to access their data known as?

A

Subject Access Request

21
Q

What is the period to supply data from a Subject access request?

A

🀍 One month
🀍 Supplied at no cost

22
Q

What may a trustee do if subject access requests from a member are unfounded or excessive?

A

🀍 Charge a reasonable fee taking into account the administrative charges

🀍 Refuse to act on the request

23
Q

Who may be fined for not complying with DPA18

A

🀍 BOTH the data controller and data processor

24
Q

What is the maximum penalty to non compliance with DPA18

A

Higher of:

🀍 £17.5m or
🀍 4% of worldwide annual turnover

25
Q

What Bill have the government announced that will restructure the ICO (Information Commissioners Office)

A

🀍 Digital Information and Smart Data Bill