How is data managed and protected in your firm?
What is GDPR?
The General Data Protection Regulations.
It is a regulation in EU law for protection and privacy in the EU and European Economic Area.
It addresses the transfer of personal data outside the EU and EEA.
What does it mean to be GDPR compliant?
GDPR is a regulation that require businesses to protect the personal data and privact of EU citizens for transactions that occur within EU member states.
Non-compliance could cost companies dearly.
What are the 7 principles of GDPR/key principles of Data Management Act 2018?
What things must companies put in place to ensure GDPR compliance?
How can you ensure data security?
What is copyright?
Exclusive rights granted to the author or creator of any original work. These rights can be licensed, assigned or transferred.
It is a form of intellectual property.
All copyrighted material used in work must be acknowledged.
What is the Data Protection Act 2018?
This is the Act that implements GDPR in the UK and relates to the protection of personal data. It came into force on 25th May 2018 and replaced the Data Protection Act 1988.
What are the key requirements of the Data Protection Act 2018?
What happens if there is a data breach?
Inform ICO within 72 hours when there is a loss of personal data and and a risk of harm to individuals
What are the 8 Individual rights under GDPR?
What article of Data Protection Act 2018 relates to storage of personal data?
Article 5(1) states that data must be;
1. processed lawfully, fairly and in a transparent manner
2. collected for specified purposes
3. hold only what is adequate and necessary for the required purposes
4.
What does Article 5(2) of Data Protection Act 2018 state?
“the controller shall be responsible for, and be able to demonstrate, compliance with regulations.”
What is the Freedom of Information Act 2000?
gives individuals the right to access information held by public bodies. Must be supplied in 20 working days.
Exceptions;
1. if contrary to GDPR requirements
2. it would prejudice a criminal matter under investigation
3. it would prejudice a persons/organisations commercial interest
What is a Non-Disclosure Agreement?
A contract by which one or more parties agree not to disclose confidential information that they have shared with each other as a necessary part of doing business together. e.g. accounting and financial stability of a company.
What is the proposed RICS on cybercrime?
RICS Professional Statement ‘Data Handling and Prevention of Cybercrime’.
What will the RICS Professional Statement ‘Data Handling and Prevention of Cybercrime’. address?
This is being put in place to protect a firm from serious reputation damage and financial loss.
What is the process for updating your systems with personal data?
refer to GDPR principles for accuracy
What is a locum agreement?
arrangements for if a professional is unavailable
What does BEL do to protect information?
Why do I handle personal data?
2. contractors
How do I ensure leaseholders information is kept safe?
2. Check email recipients before sending
What is the process of assignment?
CHECK LEASE CLAUSE
1. Leaseholder informs LL 2. LL solicitor draws up a licence to assign 3. AML/Identity/Credit checks 4. Rent deposit agreed 5. Sign.