Week 8 - Laws on Data Protection & Business through Internet Flashcards

1
Q

What is a ‘Data Subject’?

A

Any living individual who is the subject of personal data held by an organisation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
1
Q

What is a ‘Data Controller’?

A

The natural or legal person, public authority, agency or other body which, alone or jointly with others. determines the purposes and means of the processing of personal data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is ‘Data Processing’?

A

It means any operation or set of operations, which is performed on personal data or on sets of personal data, whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation, or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is ‘Personal Data’?

A

It means any information relating to an identified or identifiable natural person.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is a ‘natural’ person?

A

A human being who is alive.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is an ‘identifiable natural’ person?

A

One who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the seven principles of data protection?

A
  • Lawfulness, Fairness & Transparency
  • Purpose
  • Data Minimisation
  • Accuracy
  • Storage
  • Security
  • Accountability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does ‘Lawfulness, Fairness & Transparency’ entail?

A
  • Organisations and controllers to be 100% transparent while seeking the individuals data collection, processing and protection.
  • They must deliver the data collection purposes in clear and plain language to address the data subjects’ consent and individual rights on personal data collection.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What does ‘Purpose’ entail?

A
  • Personal data must be used for the specific purpose the data subjects have given consent.
  • The controller cannot use the data for processing outside the mentioned purpose.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does ‘Data Minimisation’ entail?

A

The DPA 2018 conditions collect the necessary, relevant and not excessive amount of personal data for processing. The controller must not collect more data than they need.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What does ‘Accuracy’ entail?

A

The controllers must verify that the data they process and collect is accurate and not misleading, incomplete or incorrect.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does ‘Storage’ entail?

A

The controllers should not keep personal data more than required. They must notify the data subjects on how long they will hold their data.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What does ‘Security’ entail?

A

DPA 2018 ordered the organisations and controllers to have security controls and measures to protect the confidentiality or integrity of stored and processed personal data so nobody can alter or steal the data subjects’ information.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What does ‘Accountability’ entail?

A
  • This principle is relatively new in contrast with DPA 1998.
  • With this newly added principle in DPA 2018, every organisation that stores or processes personal data must comply with regulatory obligations.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the ‘Datas Protection Act 2018’?

A
  • A UK law that complements the UK GDPR.
  • The DPA 2018 mostly refers you back to the UK GDPR but includes UK specific details for a few things such as; how to process criminal conviction data,
How well did you know this?
1
Not at all
2
3
4
5
Perfectly