Tutorial 8 Flashcards
what is the DPA 2018?
data protection act 2018
legislation enforced by the information commissioner’s office (ICO) to protect personal data processing and data stored on computers, digital media etc.
what does the DPA 2018 define?
defines how organisations, businesses and governments use personal data
anonymisation = ?
the process of rendering data into a form which doesn’t identify individuals
consent = ?
freely given, specific, informed and unambiguous indication of the subject’s wishes to agree to the processing of their personal data
data breach = ?
a breach of security leading to the accidental/unlawful destruction/loss/misuse of data
data controller = ?
natural or legal person which determines the purposes of the processing of personal data
data processor = ?
a natural or legal person which processes personal data on behalf of the controller
data protection impact assessment (DPIA) = ?
a method of identifying and addressing privacy risks in compliance with data protection laws
data protection officer (DPO) = ?
a role within an organisation responsible for enabling compliance with data protection legislation
data sharing agreement = ?
legal contract outlining the information that parties agree to share
data subject = ?
any living individual who is the subject of personal data held by an organisation
employee = ?
a full time or part time paid officer of an organisation
filing system = ?
a structured set of personal data
information owner = ?
a member of staff that has responsibility for a set of information
personal data = ?
information relating to an identifiable natural person
processing = ?
operations which is performed on personal data
(e.g., collection, recording, structuring, organisation, storage etc.)
profiling = ?
any form of automated processing of personal data intended to evaluate certain aspects relating to personal data of a natural person
restricted = ?
a classification of information which (if disclosed to unauthorised recipients) could have a negative impact on the rights of the individuals
third party = ?
natural or legal person other than the data subject, controller or processor