SoE - Data Management Flashcards

1
Q

How do you ensure data you hold on clients is kept secure and confidential?

A

I use secure documents that are stored on password protected machines and servers. I also only keep the information I need and use it for the purpose it has been collected without passing it on unless I have approval prior.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the 7 GDPR principles? - LADSPAS

A
  • Lawfulness, fairness and transparency – leave the individual fully informed
  • Accuracy – where necessary kept up to date, erase inaccurate personal data without dela
  • Data minimisation – collect the minimum data you need
  • Storage limitation – Retain the data for a necessary limited period and then eras
  • Purpose limitation – must inform your clients about the purpose of the data collection
  • Accountability – Record and prove compliance
  • Security - Integrity and confidentiality – Keep it secure, locked filing cabinet or fire wall
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the UK GDPR rights for indviduals?

A
  1. The right to be informed
  2. The right of access
  3. The right to rectification
  4. The right to erasure
  5. The right to restrict processing
  6. The right to data portability
  7. The right to object
  8. Rights in relation to automated decision making and profiling
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is BIM?

A

Building Information Modelling. Software creating 3D models that allow industry professionals to better plan, design, construct and manage buildings/infrastructure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What should you do if there is a data breach?

A

Inform the Information Commissioner’s Office not later than 72 hours after becoming aware of it.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the process if there is a data breach?

A
  • The UK GDPR introduces a duty on all organisations to report certain personal data breaches to the relevant supervisory authority. You must do this within 72 hours of becoming aware of the breach, where feasible.
  • If the breach is likely to result in a high risk of adversely affecting individuals’ rights and freedoms, you must also inform those individuals without undue delay.
  • You should ensure you have robust breach detection, investigation and internal reporting procedures in place. This will facilitate decision-making about whether or not you need to notify the relevant supervisory authority or the affected individuals, or both.
  • You must also keep a record of any personal data breaches, regardless of whether you are required to notify.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Can you expand on what BCIS is?

A

The Building Cost Information Service, provides cost and price data for the UK construction industry. It is a part of the Royal Institution of Chartered Surveyors.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly