LECTURE 4 - privacy regulations Flashcards

1
Q

Data privacy and processing regulations (definition)

A

Regulations that govern the collection and processing of sensitive data, especially in cases where natural person can be identified based on such data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

When does GDPR apply? (4)

A
  • GDPR applies in accordance with territorial scope
  • GDPR applies to personal data
  • GDPR applies to the relationships between data subject, data controller, data processor and recipient
  • GDPR applies to data processing
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Identifiable data meaning

A

information related to an identifiable person, data that can identify an individual

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Data subject

A

natural person whose data is processed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Controller

A

Someone who determines the purposes and means of data processing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Processor

A

Someone who processes the data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Recipient

A

To whom the personal data is disclosed (shown)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Examples of data processing

A
collection
recording
organization
structuring
use
making available
retrieval
alignment or combination
erasure
destruction
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

GDPR bases regulation of data processing on 5 main pillars:

A
  • Controller, data processor and recipient should comply with the principles of processing
  • There should be a justification for processing
  • Some data requires special justification
  • Data subject has rights within data processing
  • Controller, data processor and recipient are liable for keeping data secure
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Principles of processing (6)

A
  • Lawfulness, fairness and transparency
  • Purpose limitation
  • Data minimization
  • Accuracy
  • Storage limitation
  • Integrity and confidentiality
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Justification for processing (4)

A
  • Consent of data subject
  • Performance of a contract to which the data subject is party
  • Public purposes (compliance with legal obligation, protection of vital interest, etc.)
  • Legitimate interest (education, research, limited use, not sensitive)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Special justification processing is allowed when: (3)

Written in article?

A
  • Subject has given explicit consent
  • Necessary to carry out the obligations of the controller
  • Necessary to protect the vital interest of the data subject or other person
  • Written in article 9 GDPR
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Data subject rights (5)

A
  • Ratification of inaccurate data
  • Erasure of data
  • Restrict data processing
  • Receive the data processed
  • Object processing
How well did you know this?
1
Not at all
2
3
4
5
Perfectly