What is UK GDPR?
UK General Data Protection Regulation
It aims to create a single data protection regime affecting businesses
Also empowers individuals to take control of their data and how it is used by third parties
Gives people rights to be informed about how their data is used
What are 8 individual rights under UK GDPR?
IARERDOA
Right:
- to be Informed
- of Access
- to Rectification
- to Erasure
- to Restrict processing
- to Data portability
- to Object
- to Automated decision making and profiling
What covers UK GDPR?
Data Protection Act 2018
What key requirements does it impose on firms?
Obligation to conduct data protection impact assessments for high risk of holding data
Firms ,ust be accountable - have to prove they comply with regulations
Data security breaches must be reported to the Information Commissioner’s Office (ICO) within 72 hours where there is a loss of data and harm to individual
How much might a company be fined for breaches?
Up to 4% of global turnover or £17.5m, whichever is greater
This is policed by the ICO
How does your firm ensure data is secured securely and in accordance with the law?
Cloud storage system
Regular password changes are required
Anti-virus software protection installed
Regular training on phishing
You have used what looks like an image from a brochure and architect’s feasibility - have you breached copyright?
No because my firm commissioned these and I asked them before using in my case study
What is an NDA?
A legally enforceable contract between two parties relating to sensitive information
What happens if an NDA is breached?
The party that was harmed by the breach of the NDA can take legal action to enforce the agreement and seek damages for any losses