Data Security

0.0(0)
studied byStudied by 2 people
full-widthCall with Kai
GameKnowt Play
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/57

flashcard set

Earn XP

Description and Tags

Data security is the process of safeguarding digital information throughout its entire life cycle to protect it from corruption, theft, or unauthorized access

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

58 Terms

1
New cards
How many categories are personal data split into
three
2
New cards
Observed Data
Data generated by your devices without your consent
3
New cards
Inferred Data
Data gathered based on combinations of volunteered or observed data (e.g., a credit rating) to influence on any purchase of your interest
4
New cards
Cyber Hygiene
Routine practices that protect against data loss and cyber intrusion.
5
New cards
What is Data
It is raw facts and figures that have no meaning
6
New cards
General principles for keeping data secured online
Use two step authentication, do not save passwords to browser, do not forget to sign out, use privacy web site settings
7
New cards
Where is your personal data stored
In Data Centres across EU
8
New cards
Volunteered Data
Data generated by you when shared and posted on social media platforms
9
New cards
What is Data Centre
A large group of network servers used for storing and processing large amounts of data
10
New cards
What does The Data Protection Act 1988 do
Sets how Governments and organizations use our personal information
11
New cards
Who is your information traded by
By the advertiser and the device manufacturer
12
New cards
Personal data
Information relating to an identified person
13
New cards
Causes of data breach
Weak or stolen passwords, back door and application vulnerabilities, malware, malicious insider, human error, simple solution
14
New cards
List the categories of personal data
Volunteered, observed and inferred
15
New cards
Data and information generated
Digital Footprint
16
New cards
RIPA
Regulation of Investigatory Powers Act
17
New cards
HIBP
A website that allows internet users to check if their personal dat has been compromised by data breaches
18
New cards
Example of a company that suffered from reputation damage
T-Mobile in August 2021
19
New cards
Examples of personal information
Name, address, IP address, biometric data etc.
20
New cards
Meaning of GDPR
To protect individuals' fundamental rights and freedoms, particularly their right to protection of their personal data
21
New cards
Example of a company that suffered from financial loss
The First American Corporation in March 2019
22
New cards
Types of personal data
2
23
New cards
HTTPS (Hypertext Transfer Protocol Secure)
An encrypted and secured version of HTTP which means all communications between the browser and web are encrypted
24
New cards
Example of a company that paid fines as a punishment due to the breach
Amazon in summer 2021
25
New cards
HTTP (Hypertext Transfer Protocol)
the protocol used for transmitting web pages or files over the Internet
26
New cards
Three examples of companies affected by data breach
DarkBeam, Real Estate Wealthy Network & ICMR
27
New cards
ICMR
Indian Council of Medical Research
28
New cards
Meaning of ICO
Provides guidance on data security breach management for companies and organizations
29
New cards
When was the Data Protection Act replaced
In May 2018
30
New cards
Encryption
Process of converting readable data into unreadable characters to prevent unauthorized access.
31
New cards
Example of a company that suffered from theft of data
CAM4 in March 2020
32
New cards
Examples of non-personal information
Data logs, weather and financial systems
33
New cards
The 3 main laws related to collecting & storing data
The European Convention on Human Rights Article 8, Freedom of Information Act (Scotland) & General Data Protection Regulation 2018
34
New cards
Who does the FOISA apply to
All local authorities, NHS, colleges and universities
35
New cards
What does the GDPR state for data stored outside Europe
That it can only be transferred if an adequate level of protection is guaranteed
36
New cards
List the types of personal data
Personal information and non-personal information
37
New cards
ICO
Information Commissioners Office
38
New cards
Data Breach
When sensitive or confidential information is copied, transmitted, or viewed by an individual who is not authorized to handle the data.
39
New cards
Effects of data breach
Reputation damage, theft of data, financial loss & fines
40
New cards
Meaning of RIPA
controls and regulates surveillance and other means of information gathering which public bodies employ in the discharge of their functions.
41
New cards
Data Processor
Maintains records and activities carried out on the personal data.
42
New cards
Has legal liability and is responsible for a data breach
43
New cards
Non-personal data
Information that does not relate to a person and could be
44
New cards
GDPR does not apply to the UK but to all of EU laws so what does
The Data Protection Act 1988
45
New cards
7 Principles of GDPR
Lawfulness, fairness & transparency, Purpose limitation, accountability, accuracy, storage limitations, integrity and confidence, data minimization
46
New cards
When did Freedom of Information Act (Scotland) Act 2002 (or FOISA) came into force
On January 1 2005
47
New cards
List the consents requested to have access to personal data
* Can be withdrawn at any time
48
New cards
* Is not always appropriate
49
New cards
* Needs to remain valid
50
New cards
*****
51
New cards
GDPR
General Data Protection Regulation
52
New cards
Freedom of Information Act (Scotland)
provides public access to information held by the authorities
53
New cards
Who in the company does the GDPR apply to
Data controller and processor
54
New cards
The European Convention on Human Rights Article 8
Everyone has the right to respect for his or her private and family life, home and correspondence
55
New cards
What law was replaced by GDPR 2018
Data Protection Act
56
New cards
What are the exemptions of the FOISA
Relating to matters such as national security, police investigations and the formation of government policy
57
New cards
Data Controller
someone who determines why and how personal data is processed
58
New cards
Exemptions of ECHR

interests of national security, public safety, prevention of disorder or crime