14 Data Governance Flashcards
What is data governance?
Policies meant to protect people and the integrity of the data
Data governance includes international standards, national laws, local laws, industry regulations, company contracts, or personal rules.
What is data integrity?
How valid, or accurate, the data is
Maintaining data integrity involves ensuring that data is not manipulated incorrectly.
What can happen if data governance rules are ignored?
It can hurt the people whose data you are using and have legal repercussions for you personally.
What are the two main methods of granting access to data?
- Role-based
- User group-based
What does role-based access focus on?
The role a person plays in a company.
What is user group-based access?
Access focused on the specific group to whom the data pertains.
What are Data Use Agreements?
Contracts that state how data can be used, processed, deleted, and maintained.
What is data encryption?
Using algorithms to translate data from plaintext to cyphertext.
True or False: Data in transit is vulnerable.
True
What is de-identification/masking of data?
Removing personal or sensitive information from data to legally report it.
What does the acceptable use policy outline?
How data can be used, how it can’t be used, and what happens if the policy is broken.
What should you do if you suspect a data breach?
- Report the breach
- Secure operations
- Fix vulnerabilities
- Notify the impacted parties
What are some reasons for data deletion?
- Consent is withdrawn
- Illegal means were used to collect or process the data
- Legal obligations
- Data is no longer needed
- The data retention period ended
What does data retention cover?
How long data will be kept and how it will be stored.
What is personally identifiable information (PII)?
Data that can be used to identify a specific person.
List some examples of PII.
- Name
- Physical address
- Email address
- IP address
- Social Security number
- Phone number
- License number
- Passport number
- Login ID
- Social media ID
- Social media posts
- Date of birth
- Digital images
- Geolocation
- Biometric data
- Behavioral data
What is the role of a data analyst regarding data security?
To understand and follow data security protocols.
What is the gold standard in data processing regulations?
The European Union General Data Protection Regulation (GDPR).
Fill in the blank: Data security is important for maintaining _______.
data integrity.
What is the consequence of deviating from the Data Use Agreement?
It is illegal and will have consequences for the company and the individual.
What should you do before sharing data with someone not listed in the Data Use Agreement?
Obtain express approval with a release approval.
True or False: Data security requirements are solely determined by government regulations.
False
What is the significance of understanding data classifications?
Certain types of data are legally protected and have specific rules about how to treat them.
What does PII stand for?
Personally Identifiable Information
PII includes any data that can identify a specific person.