Data Management Flashcards

1
Q

What events might you put in a diary to remind you?

A

Lease expiries
Breaks
Rent reviews
Rent steps

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What types of data security is there?

A

Disk encyption
Regular off site back ups
Password protection
Anti virus software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What governs data protection

A

General Data Protection Regulation
Data Protection Act 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does GDPR stand for?

A

General Data Protection Regulation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the aim of GDPR

A

It aims to protect individuals data and its use with businesses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the 8 individual rights of UK GDPR

A

Rights to:
be Informed
have access
Rectification
Restrict processing
dat portability
object
erasure
automated decision making/profiling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How do you verify your data

A

I use a triangulation method, for example I would compare the manual TS with the TS on our MRI system and also compare these to the lease.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the difference between GDPR and Data Protection act 2018

A

the DPA applies only to companies that control the processsing of data. GDPR extended the law to those companies that process personal data on behalf of controllers. For example, if a tenant gives our solicitors their details they would be liable under DPA but because the solicitors then pass me the lease the solicitor and Savills/me would be liable under GDPR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the GDPR fines?

A

GDPR = 4% global turnover or 17.5m which ever is higher
Under DPA it was £500,000 but it was felt this was not enough for large international companies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the Data Protection Act 2018

A

It is the UK’s implementation of the General Data Protection Regulation that was brought in after we left the EU.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the data protection principles

A

Used fairly, lawfully and transparently
Used for specified explicit purposes
kept no longer than necessary
accurate and up to date

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are your rights under the Data Protection Act 2018

A

To know how your info is being used
access personal data
have incorrect data updated
have data erased
stop or restrict processing of personal data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

If you have a request for what data is held how long until you respond

A

no more than a month

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Where should data breaches be reported to

A

Information Commissioners Office within 72 hours where there is a loss of data and risk of harm

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How do Savills store data

A

Within my team we have a file system and a number of internal systems which are encrypted and only accessed through permissions and password protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the freedom of information Act 2000

A

Gives right of access held by public bodies
The public body must tell individual whether it holds their info
They are required to supply within 20 working days
It can charge for the provision of the information

17
Q

What are the Freedom of Information Act 2000 exemptions

A

It is in contrary to the GDPR requirements
It would prejudice a criminal matter under investigation

18
Q

What is a public body

A

a formally established organisation that is publicly funded to deliver a public or government service

19
Q

How can data security be improved

A

Firewalls
encyption
passwords

20
Q

What is a NDA?

A

Non disclosure agreement - is where one party agrees to not reveal confidential information

21
Q

What should an NDA include

A

ID of parties
definitions (different types of info covered)
Obligations (what happens if shared)
Time frame
Exclusions
Remidies - what happens if breached

22
Q

What is the proposed professional statement

A

Professional Statement on Data Handling and Prevention of Cybercrime

23
Q

What is the proposed Professional Statement on Data Handling and Prevention of Cybercrime for?

A

To cover best practice and mandatory obligations.
To address how surveyors capture, store and share data
Likely to mandate policies, practices and training for all regulated firms and members