POPIA Flashcards
(15 cards)
What does POPIA stand for
Personal information Of Protecting Insights Assessments
Purpose of the training
Legal requirement , once a year.
Purpose of the act (4)
1.Effect constitutional right of privacy
2.Provide minimum requirements for lawful processing
3.Provide rights and remedy against abuse
4.Establish regulator
De-identified data
Data that is not linked to someone
What is processing
Operation , activity, auto or not , including access ,storage
Information Life Cycle (5)
1.Receive
2.Use
3.Share
4.Maintain
5.Destroy
Data subject
The owner of the data
Responsible party
The person accountable to the information regulator
Operator
People working with the data
Governance
Contractual agreement
Data breach
Personal information accessed by unauthorized entity
Data breach requirements
1.Notify regulator
2.Notify data subject
3.
Human Error
No personal information in the body of the email
Incident management acquirements
1.Secure Information - recall email, call and confirm deletion
2.Incident report - Inform Information officer
3.Inform Data Subject
4.Inform regulator
Condition for lawful Processing
1.Accountability
2.Processing limitation
3.Purpose specific
4.Use limitation
5.Openness
6.Security safeguards
7.Individual participation