How to Respond to Security Breaches Flashcards

10.1 Key Requirements if Legislation relating to the security or info and data (5 cards)

1
Q

What should you do following a security breach?

A
  • Review the relevant policies and procedures and implement actions to reduce the possibility of a similar breach happening again.
  • Review security settings and check that firewalls and anti-virus protection are up to date on all devices, and to require all staff to change their passwords
  • Provide staff with updated training to recognise security threats.
  • Check if the breach involves personal data; if it does it should be reported to the ICO.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What should you do if the security breach is significant?

A

You may have to report it to the National Cyber Security Centre (NCSC) as well as ICO within 72 hours.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How to prevent Fraud in a business?

A
  • If senseitive info needs to be distributed, it should be done through secure electronic means.
  • Docments should be protected from unauthorised edis by saving them in a read only format or applying restictive settings.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How to prevent loss of theft of info and data in a business?

A
  • Keeping paper copies of confidential info secure
  • Documents may be stored in a safe, in extreme cases.
  • Photocopiers should be checked after use to make sure important documents have not been left inside.
  • Documents should be shredded or securely disposed of on they are no longer required.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Training in preventing security breaches?

A

Business/organisations should train their staff to ensure they understand their legal responsibilities when handling data, as well as how they should manage data to reduce the risk of security breaches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly