Data Management - Summary of Experience Flashcards

1
Q

What is GDPR

A

EU General Data Protection Regulations 2016

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the data protection act?

A

Data Protection Act 2018
- UKs application of GDPR

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

When was DPA and GDPR introduced

A

May 2018

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Why was DPA 2018 introduced?

A

1998 Act introduced to cover modern data and technology
2018 Act to incorporate GDPR legislation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the principles of GDPR and DPA 2018

A
  • Information used lawfully, fairly and transparently
  • Information collected for specified, explicit and legitimate purposed
  • Information is adequate, relevant and limited to necessity
  • Information is accurate and kept up to date
  • Information is kept no longer than necessary
  • Information is kept safe
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are tje individual rights under GDPR and DPA 2018?

A
  • To be informed
  • To access
  • To rectification
  • To reasure
  • To restrict processing
  • To data portability
  • To object
  • To automated decision making and profiling
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are tje individual rights under GDPR and DPA 2018?

A
  • To be informed
  • To access
  • To rectification
  • To reasure
  • To restrict processing
  • To data portability
  • To object
  • To automated decision making and profiling
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the purpose of GDPR and DPA 2018?

A

To protect citizens data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are the penalties under GDPR and DPA 2018?

A

Fines
- 4& annual gloabl turnover or 20 million euros

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What constitutes personal data?

A

Information relating to a person to identify that person
e.g names, photo, email, bank details, IP address

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Give some examples of personal data and how they apply to property companies

A
  • Data relating to investors
  • Data relating to fund managers / Clients
  • Valuations
  • Compliance
  • Bookkeeping payroll
  • Background checks
  • HR
  • Tenant information
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What organisations are exempt from GDPR

A
  • Exceptions for organisations with fewer than 250 employees
  • Private individuals not engaged in business activities
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is your firms data protection policy?

A
  • Follow legislation
  • Suspected breaches should be reported to the individual line managers or firms data protection officer
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

How do you apply your firms data protection policy?

A
  • I ensure i have an understanding of sensitive and protected data
  • I don’t send sensitive or preotected data unless it is to the individual
  • Anonymise information where possible
  • I report suspected breaches
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Who regulates GDPR in the UK?

A

The Information Commissioners Office

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are the obligations imposed by GDPR

A
  • MUST have knowledge of the data you store and process (including its location and security)
  • MUST be able to delee every instance of individuals data
  • MUST demonstrated compliance in managing data
  • MUST be able to prove how information is being used
  • MUST offer data portability
17
Q

What are the RICS best practice guideance points for GDPR compliance?

A
  • COnduct data reviews to understand risks
  • Anonymise data where possible
  • Encrypt where possible
  • Create breach policy response
  • Treat commercial data as personal data
  • Understand data processes
18
Q

How do you comply with GDPR in your role?

A
  • Do not give out confidential or personal information
  • Report suspected breaches
  • Understand what information we hold that is protected
  • Anonymise data where possible
  • Upload to password and security protected data rooms
  • Keep records of consent for processing, storing and retaining data
19
Q

Give me an example of how you prcoess and handle confidential information?

A
  • Use document systems to add, amend and remove information
  • Upload files to secure data room
  • Anonymise information
  • Password protection to access files
20
Q

What is encryption?

A

Mathematical function that encodes data in such a way that only authorised users can access it

21
Q

What is a firewall?

A

Network security system that monitors and controls incoming and outgoing network traffic, based on predetermined security rules

22
Q

What should be included in a firms privacy notice?

A
  • What information you have
  • What information will be used for
  • Which third parties you may share information with
  • How long information is being kept for
  • What legal right the firm has
23
Q

Explain your use of Tramps and Horizon

A
  • Systems used to manage tenant information and accounting information, such as invoices, rent received etc
  • Tenant contact information and Client information also stored
  • Password protected
24
Q

Explain your use of Sharepoint and vRoom

A

Document management systems that store legal documents such as title information, leases, licences
- Password protected

25
Explain your use of data input forms
When information requires amending or uploading, data input form is used to submit to the system
26
How do you ensure accuracy of information on data management systems
Chekck against original documents such as lease
27
How do you review arrears?
Through TRAMPS / Horizon -> able to see tenant payment / financial history - monies received are allocated by credit controllers and this is reflected on TRAMPS / horizon
28
How do you review SC expenditure
Run a SC expenditure report on TRAMPS / Horizon
29
How do you review leases
Sharepoint / vRoom -> any missing information, liaise with solicitors and have the relevant documents securely uploaded
30
Explain Workmans EFS
Electronic Filing System -> secure system where information is stored i.e Budgets, reconciliation, service contracts, contruction info
31
What reports do you run in your role?
- Arrears reports - Transaction listing - Expenditure reports - Dilapidation reports
32
Explain how you monitor compliance on Meridian and QUOODA
- Linked to my email, so i get notifed daily when action or document is non-compliant - Get notified when document or action is becoming overdue - Update comments weekly on current status of documents and actions