Sercurity - Information Management Flashcards
Define Information
Obtained when data is manipulated by the computer’s processor into a meaningful and useful form
REASONS WHY DATA AND INFORMATION ARE IMPORTANT TO ORGANISATIONS
Having qualities of completeness, timeliness, accuracy, unbiased ness and clarity help to:
- assist in decision making
- support organisational goals (eg making profit)
Define Legal Obligations
Legal obligations that individuals and organisations have with respect to the ownership and privacy of information, and freedom of expression
What are physical security measures?
Equipment used to assist in the production of information systems and the files produced, received and stored by individuals and organisations
What are software security measures?
Software and procedures used to assist in the protection of information systems and files produced, received and stored by individuals and organisations
Eg. User names, passwords, encryption, firewalls etc
What is personal information?
Is information about an individual whose identity is clear and can reasonably be worked out from that information
Examples of personal information
Names Address Age Gender Personal opinions Financial status
What is sensitive information? And examples
Information that can’t be asked about an individual
Examples:
- racial or ethnic origin
- political opinions
- religious beliefs
What is health information?
Medical history including physical, mental and psychological health, including any disability
Dental records
What does Information Privacy refer to?
The rights of individuals and companies to deny or restrict the collection and use of information about them
What are the benefits of the Privacy Laws?
Give consumers legal protection and enforceable rights
Give them more say in how their personal information is collected and used and who gets to see it.
What are the 10 privacy principles?
Collection Use and Disclosure Data Qualitly Data Security Openness Access and Correction Identifiers Anonymity Transborder flow Sensitive information
Privacy Principle: Collection
Any information collected must be for a lawful purpose and necessary for that purpose
Privacy Principle: Use and Disclosure
The collector of information must disclose why the information has to be collected, that it is lawful or required under law
Privacy Principle: Data Quality
Collected information must be accurate, up to date and complete