Data Management Flashcards

(26 cards)

1
Q

What is the Commissioners for Revenue and Customs Act 2005 (CRCA)

A

It applies to all HMRC officers.
It expressly provides duty to keep information confidential.
Criminal penalties for wrongful disclosure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is Section 17 of the Commisioners for Revenue and Customs Act 2005 (CRCA)?

A

Section 17- Allows sharing of information between HMRC and VOA (SDLT, RALDs)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is Section 18 of the Commisioners for Revenue and Customs Act 2005 (CRCA)?

A

Section 18- Permits disclosure of information outside VOA/HMRC in line with our function (sharing RALDs with agents).
Must be proportionate and necessary.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Section 19 of the Commisioners for Revenue and Customs Act 2005 (CRCA)?

A

Section 19- makes it criminal offence to disclose information that can identify an individual, unless it’s covered by Section 18.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are Sections 20 and 21 of the Commisioners for Revenue and Customs Act 2005 (CRCA)?

A

Sections 20 & 21- Covers when information can be disclosed where it is either in the public interest or it is to a prosecuting authority.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are Sections 22 and 23 of the Commisioners for Revenue and Customs Act 2005 (CRCA)?

A

Sections 22 & 23- Relates to rights to information under GDPR and FOIA and set out how these requests should be treated.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What Act covers HMRC officers?

A

The Commisioners for Revenue and Customs Act 2005 (CRCA)?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the Freedom of Information Act (FOI) 2000?

A

Gives people the right to request information from public authorities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the two rights under the Freedom of Information Act (FOI) 2000?

A
  • To know if personal information is held.
  • For that information to be communicated.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the statiatory deadlines for Freedom of Information requests?

A

20 days

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the reasons for refusal of a FOI request?

A
  • prejudice a criminal matter under investigation, or a person’s commercial interests.
  • Too costly or too much staff time.
  • The request is vexatious (difficult to deal with/cause anger).
  • The request is a repeat request from same person.
  • The request is contrary to GDPR
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What are the VOA’s limitations to dealing with FOI requests?

A

Must not disclose property related information as it could identify an individual.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the Data Protection Act 2018?

A

UK’s GDPR.
Controls how personal data is used by organisations and businesses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What are the 7 principles of GDPR?

A

LAMP ASS:
Lawfulness, fair and transparency.
Accuracy.
Minimisation of data.
Purpose limitation.

Accountability.
Storage limitation.
Security (integrity and confidentiality).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are the 10 individual rights of GDPR?

A

RARE APC COI:
Rectification
Automation
Restriction
Erasure

Access
Portability
Consent

Complain
Object
Informed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the statutory deadline to report a breach under GDPR?

A

Must be reported internally within 72 hours of becoming aware.
Must be reported to Information Commisioner’s Office (ICO) if breach likely to risk people’s rights within 72 hours.

17
Q

What must each public authority have to ensure GDPR?

A

A dedicated Data Protection Officer (DPO)

18
Q

What is the maximum fine for a breach of GDPR?

A

20 million euros or 4% of global turnover.

19
Q

What is copyright?

A

Set of exclusive rights granted to creator of work, is a form of intellectual property.
Essential to acknowledge any copyright for information duplicated in work.

20
Q

What external data do you use for your work?

A

CoStar- property information such as lease and sales data.
Expedian GOAD- Occupier information

21
Q

How do you protect any sensitive data in relation to inspections?

A
  • Ensure all plans and measurements are kept confidential before, during, and after inspections.
  • Ensure clear desk policy is maintained.
  • Secure physical plans and data safely post-inspection.
  • Save all plans and data securely digitally, in secure EDRM application.
22
Q

If you discovered a data breach, how would you deal with it in your organisation?

A
  • Security incidents should be reported on the Security Incident Reporting Tool within 48 hours.
  • If the breach risks anybody’s personal data being breached, then the Information Commissioners Office (ICO) must be informed within 72 hours.
23
Q

What is the defintion of personal data?

A

Any information relating to an individual or identifiable person.

24
Q

What is a data breach?

A

Is a security incident where unauthorised individuals gain access to sensitive or confidential information.

25
What would you do if you received an FOI request?
I would contact the Data Sharing and Disclosure (DSD) team, who provide advice and guidance on FOIA within the VOA.
26
How do you secure data?
- By using strong passwords for all applications. - By ensuring all of my devices are password protected and locked if not in use. - Ensuring a clear desk policy, with no documents or data visible. - By securely storing data (plans etc) in physical cabinets, or secure folders online.