Data Management Flashcards

1
Q

What are the key requirements of Data protection act?

A

Conduct data protection impact assessment for high risk holding of data.

‘Data accountability’ businesses proving to ICO how they comply with regulations.

Have a ‘controller’ decides how and why personal data is processed and directly responsible for GDPR.

Report breach to ICO in 72 hours

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Why was GDPR created?

A

Create a single data protection regime affecting businesses and empower individuals to learn how and why their data is processed by businesses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are your company’s compliance procedures?

A

All our data is in a secure filing system, only accessible by password protected computers.
When the information is no longer needed the data is removed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the key principles of the data protection act?

A

PALDASI

Purpose limitation
Accountability
Lawfulness
Data minimisation
Accuracy
Storage limitation
Integrity and Confidentiality

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the individual rights of GDPR?

A

A PEAR PIO

Access
Portability
Erasure
Amend
Restrict process
Informed Consent
Object
Rectification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What databases have you used?

A

CoStar.
Agent Insight.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the limitations of these databases?

A

Relies on third party information, need to check the information is correct

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

How do you ensure the information is kept up to date?

A

Verify data with parties involved in the transaction.

E.g. if unit was u/o, would ask in the future if the sale was completed.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does it mean to be GDPR compliant?

A

Your business’s processes are in line with GDPR.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

If you collate information from various sources, how would you store this data to allow for easy analysis?

A

I would keep in our online filing system on a clearly name file in the appropriate project that it relates to.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How can you keep data stored securely?

A

On a filing system only accessible from our password protected computers.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Key Principles of Data Protection Act

A

Act lawfully
Limit data for purpose
Remove data when finished
Process data securely

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Data Protection Act Purpose

A

gives people right to be informed on how their data is processed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How long can you store data?

A

Only as long as it is necessary to do so.
Minimum of six years.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How did you provide advice on data security?

A

Advised that we kept their details on secure propman system.
Advised that lease events were stored securley. Benefit of the secure storage was that we wouldn’t miss lease events.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Name another time you recommended data and security? What system?

A

Propman (Detail propman system, what security it provided and services)

17
Q

How do you comply with UK GDPR when dealing with mailing lists?

A

Obtain consent from those who are to receive the marketing list.

18
Q

How would you request data from a public body?

A

You would submit a Freedom of Information request in writing. FOI Act 2000.

19
Q

How do you request your personal information from a public authority?

A

Subject Access Request

20
Q

How long does an organisation have to respond?

A

Within 20 working days.

21
Q

What are the exemptions to the freedom of information act?

A
  • Contrary to GDPR requirements
  • if it would prejudice a criminal matter under investigation
  • Or someone’s personal information.
22
Q

Why was data management storage essential when providing a reliable service?

A

Propman. Rent collection, RR dates, upcoming lease events

23
Q

How did you verify data against another source

A

Triangluation. Speaking with other agents to confirm rents.

24
Q

What is Copyright

A

Set of exclusive rights granted to author or creator of original work.
Form of intellectual property.

25
Who polices the data protection act
The information commissioners office and enforcement
26
What replaced the data protection act 1998
UK GDPR supplemented by the Data Protection Act 2018. Relates to personal data.
27
What are the fines for data breaches
Up to 4% global turnover of the company or up to 20 million euros, whichever is greater. Policed by ICO
28
What is the aim of UK GDPR supplemented by Data Proteciton Act 2018
Aims to create single data protection regime affecting business and empower individuals to take control of how their data is used by 3rd parties
29
What is personal data?
All data from which a living person is identified or identifiable
30
What can you tell me about data security
Relates to preventing breaches Data retention, handling and security CAs, NDA's CDA's
31
How do you ensure reliability of 3rd party information?
Triangulation
32
What is the cloud storage concept?
Refers to storing data on remote servers over the internet allowing access to files and data regardless of location.
33
What is a Copyright
Set of exclusive rights granted to author or creator of any original work, including right to copy. Form of intellectual property. Must acknowledge any copyright for information duplicated in your work.
34
How do you ensure security of data in your company?
Firewalls, encryption, passwords, NDA's
35
What is data retention?
Firms require retention policies for the safe keeping of files
36
What is an NDA?
Non disclosure agreement. Legally enforceable contract between 2 parties. Agreement creates confidential relationship between a person with the information and one who has access to it.
37