SOE Data Management Flashcards

(9 cards)

1
Q

Who enforces GDPR? Say there is a breach of data, who enforces GDPR?

A

ICO – Information Commissioners Office

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What enforcing powers do the ICO have?

A
  • Conduct audit checks to check you are complying with obligations
  • Serve an Enforcement Notice order if there has been a breach
  • Issue Monetary penalties – fines
  • Prosecute you if you fail to comply with Enforcement Notices
  • Report to Parliament on issues of concern.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What actions are undertaken at CBRE to ensure data security?

A
  • Mandatory training
  • CBRE File transfer systems
  • Firewalls and blocked sites
  • Phishing security check on emails – IT team verify if email/link is safe.
  • Password protected computers – password updated every 3 months
  • Email retention
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the UK General Data Protection Regulation (2016) and Data Protection Act 2018

A
  • EU GDPR no longer applies in UK and entirely transcribed by UK GDPR.
  • UK GDPR is supplemented by Data Protection Act 2018 (this replaces Data Protection Act 1998).
  • It gives people right to be informed about how their personal information is used.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does Article 5(1) Principles in UK GDPR state?

A

Relates to storage of personal data. Data must be:
* Processed lawfully, fairly, transparent matter.
* Collected for specified and legitimate reason.
* Accurate and kept up to date.
* Kept in a form that permits identification of data for no longer than is necessary.
* Appropriate security of data – protection against unauthorised processing.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does Article 5(2) in UK GDPR state?

A

Controller shall be responsible for, and be able to demonstrate compliance with principles.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the 8 Individual Rights under GDPR?

A

Right to:
1. Be informed
2. Access
3. Rectification
4. Erasure
5. Restrict processing
6. Data portability (use data for their own purposes)
7. Object
8. Rights to automated decision making and profiling (as undertaken by insurance companies).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Who is Data Protection Officer at CBRE?

A

Nigel Anderson

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q
A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly