What legislation for Data Management
UK: Data Protection Act 2018!
EU: GDPR (General Data Protection Regulations)
What do you need to consider when handling data?
Is the data:
- Lawful
- Fair
- Accurate
- Transparent
- Secure
What things do you do to ensure safe data handling ?
What actions improve data protection daily at work?
What are the 7 key principles of Data Management (or GDPR)?
What 2 types of data are you aware of?
Give examples for both
Sensitive data (Age, Race, Religion - 9 protected characteristics)
Personal Data (Address, email, phone)
What are people’s rights relating to their data under GPRD Data Protection Act?
Right to…
- request a copy of the data held.
- erasure.
- know how data is being used.
- restrict processing .
- rectify inaccurate data.
What is ISO 27001?
What does ISO Stand for?
Information Security Management
International Organisation for Standardisation
Why:
- Data Protection systems
- Cyber security
- Client confidentiality
If you were responsible for a data breach, who would you notify and what is the procedure?
Notify - Data Protection Officer (or Risk and Compliance team at FG)