Data Management Flashcards

(14 cards)

1
Q

What legislation governs data management?

A

Data Protection Act 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the 2 types of data?

A

Sensitive and personal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the 7 key principles of data management

A
  1. Lawfulness and transparency
  2. Accuracy
  3. Purpose limitation
  4. Accountability
  5. Integrity and confidentiality
  6. Data minimisation
  7. Storage limitation
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is GDPR?

A

General Data Protection Regulation
Governs how the personal data of individuals may be processed and transferred

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Does GDPR still apply to the UK?

A

It is retained in our domestic law as the UK GDPR, but the UK has the independence to keep the framework under review.
The UK GDPR sits alongside an amended version of the DPA 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does ISO 9001 govern?

A

International Standard for Quality Management Accreditation
FYI – helps organisations improve their processes and systems to meet customer needs and deliver high-quality products and services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does ISO14001 govern?

A

International standard for Environmental Management Accreditation
FYI – provides a framework for businesses to identify, monitor, and minimize their environmental impact by managing aspects like waste, resource usage, and compliance with relevant environmental laws

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does ISO27001 govern?

A

International Standard for Data Security Accreditation

FYI - governs how organizations manage the security of their information. It’s designed to help organizations protect financial information, intellectual property, employee details, and other assets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What do you do if there is a data breach?

A

Inform the data controller immediately on how the leak happened and what was shared

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Who are the people involved in managing data?

A
  1. Data protection officer
    Responsible for ensuring compliance
  2. Data Controller
    Determines purposes and meaning of possessing data
  3. Data processor
    Responsible for processing data on behalf of controller
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What happens if DPA is breached?

A

Greatest of fine up to of £17.5mil or 4% of annual turnover

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

You sent an email by mistake to a friend, which included confidential client information and contact details. What do you do?

A

Inform the data controller immediately of the possible breach and the data shared

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Practical steps to limit data breaches

A
  1. Password protected spreadsheets
  2. PDFs through mimecast, these require a 1 time password
  3. Timers on emails so that you have the opportunity to review you emails being sent
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

When do you need to have a Data Protection Officer?

A

When the firm has over 250 employees

How well did you know this?
1
Not at all
2
3
4
5
Perfectly