Data Management Flashcards
What are the GDPR consumer rights?
A - Access
C – Consent
C - Correction
E – Erasure
P – Data Portability
ACCEP
(Accep your rights)
What regulation governs laws on data protection and privacy?
UK General Data Protection Regulation 202
What is the maximum GDPR fine set by UK GDPR and DPA 2018?
20 million euros (£17.5 Million) or 4% of annual global turnover (whichever is highest).
Data offences can be punished by what? Name two (excluding fines).
Warnings
Temporary or permanent ban on data processing
What is DPA 2018?
Data Protection Act 2018
The Act works in two ways: it provides individuals with rights, including the right to know what information is held about them and the right to access that information. it states that anyone who processes personal information must comply with the principles in the Act.
UK’s implementation of GDPR
Are you aware of the Freedom of Information Act 2000?
Yes, it provides the public access to information held by public authorities.
How do FOI Act 2000 requests work?
Must be in writing
What security measures can you use to protect data?
Password protection
Security markings
Physically locking storage units
Encryption firewalls
Two factor authentication
What best practices would you encourage in terms of managing data?
Cross reference computer with hard copy
Back up IT systems
Write once, read many times
Keep an audit trail
Ensure electronic signature cannot be altered. (send PDFs not word)
Tell me what you know about GDPR.
General Data Protection Regulation
Article 5 sets out the consumer rights which includes the right to be informed, right to access, right to erase, right to correct and right to withdraw consent.
What is the definition of personal data?
Personal data are any information which are related to an identified or identifiable person.
What is encryption/firewalls/blockchain?
Encryption is a means of securing data by encoding it mathematically such that it can only be read, or decrypted, by those with the correct key or cipher.
A firewall is a network security device that monitors traffic to or from your network. It allows or blocks traffic based on a defined set of security rules.
A blockchain is a digitally distributed, decentralized, public ledger that exists across a network.
Tell me about how you extract data from a source regularly used in your role.
Internal database – CDB for rental information
Set parameters for data to refine prior to download
Use filters on excel to refine the data to what I need
What is an electronic document management system (EDMS)?
Software package designed to manage electronic information and records within an organisation’s workflow.
Give me an example of how you ensure that data is kept securely.
Permission levels, back up systems, sensitive tag
How do you validate information?
Cross check with another source
Call to get further information / confirm details
Adopt a common sense approach
What are pros/cons of primary data sources?
Pros
Greater control (type of data, design, method)
May be more accurate
Cons
Expensive (may make it more difficult)
Time consuming
What are pros/cons of secondary data sources?
Pros
Easily accessible
Affordable
Cons
May lack reliability
May be outdated
You shared rental evidence with an agent for rating purposes, did you have permission to share that information?
Yes - The Valuation Office Agency (VOA), as an executive agency of HMRC, is subject to the Commissioners for Revenue and Customs Act 2005 (CRCA)
Can other colleagues access information you are working on?
No, if they are in a different team e.g. DVS then they will not be able to access information stored for rating purposes.
Freedom of Information Act 2000 exemptions?
Personal data
National security
Tell me more about the Data Protection Act 2018.
The Data Protection Act 2018 controls how your personal information is used by organisations, businesses or the government.
What regulation covers sharing data?
Commissioners for Revenue and Customs Act 2005
CRCA ACT
Benefits of cloud-based systems?
Information is backed up by encrypted servers
Accessibility can be managed via online settings
Cheaper than physically storing and managing files
More convenient to send and share files online instead of mailing physical copies