Podcast
Questions and Answers
What primary purpose does the General Data Protection Regulation 2018 serve?
What primary purpose does the General Data Protection Regulation 2018 serve?
Which of the following is considered personal data under GDPR?
Which of the following is considered personal data under GDPR?
Who is responsible for ensuring that personal data is kept accurate and up to date?
Who is responsible for ensuring that personal data is kept accurate and up to date?
What must a data controller do when handling data from a data subject?
What must a data controller do when handling data from a data subject?
Signup and view all the answers
What action is required if a data subject requests a copy of their stored data?
What action is required if a data subject requests a copy of their stored data?
Signup and view all the answers
Which of the following actions is NOT a responsibility of data controllers under GDPR?
Which of the following actions is NOT a responsibility of data controllers under GDPR?
Signup and view all the answers
What defines a data processor in the context of GDPR?
What defines a data processor in the context of GDPR?
Signup and view all the answers
What right does a data subject have regarding the accuracy of their personal data?
What right does a data subject have regarding the accuracy of their personal data?
Signup and view all the answers
How long does a data subject have to wait for a copy of their personal data after requesting it?
How long does a data subject have to wait for a copy of their personal data after requesting it?
Signup and view all the answers
What is one of the core functions of the Data Protection Commission (DPC)?
What is one of the core functions of the Data Protection Commission (DPC)?
Signup and view all the answers
Which of the following rights allows a data subject to have their data erased?
Which of the following rights allows a data subject to have their data erased?
Signup and view all the answers
What does the Data Protection Commission promote?
What does the Data Protection Commission promote?
Signup and view all the answers
In what format can a data subject request their data for portability?
In what format can a data subject request their data for portability?
Signup and view all the answers
What does the Data Protection Commission do in regard to breaches of regulation?
What does the Data Protection Commission do in regard to breaches of regulation?
Signup and view all the answers
Which option correctly describes a responsibility of a data subject under the General Data Protection Regulation?
Which option correctly describes a responsibility of a data subject under the General Data Protection Regulation?
Signup and view all the answers
Study Notes
General Data Protection Regulation (GDPR) 2018
- EU regulation implemented in May 2018, replacing Data Protection Acts 1988-2003.
- Empowers individuals by providing clear rights over personal data.
- Organisations must ensure accuracy and currency of any stored personal information.
Key Definitions
- Personal Data: Information identifying individuals including names, ID numbers, locations, online activity, and all aspects of identity.
- Data Subject: The individual whose personal data is collected and held.
- Data Controller: Responsible for data management, grants access to others.
- Data Processor: Receives access from the data controller to process data, lacks control over its use.
Data Controller Responsibilities
- Use data strictly for its intended purpose (e.g., no marketing use of contact emails).
- Grant access only to necessary data processors pertaining to the intended purpose.
- Ensure data security with measures like password protection.
- Fairly obtain and process data.
- Maintain accuracy, completeness, and timeliness of data.
- Respond to data subject requests within 30 days; can request clarification for large data sets.
- Retain data only as long as necessary for its purpose, eliminating data that is no longer needed.
Data Subject Rights
- Right to inquire about the usage of their data.
- Right to obtain copies of personal data within 30 days of requesting.
- Right to correct any inaccurate or incomplete data.
- Right to request deletion of personal data that is no longer necessary.
- Right to request data portability in a user-friendly format.
Data Protection Commission (DPC)
- Independent authority ensuring protection of EU citizens' personal data.
- Serves as the Irish supervisory authority for GDPR compliance.
- Investigates complaints regarding data treatment violations.
- Issues fines for breaches of GDPR.
- Conducts inquiries into data protection infringements.
- Promotes awareness of data rights via campaigns and guidance materials.
- Engages with sectors to enhance understanding and compliance with GDPR.
Studying That Suits You
Use AI to generate personalized quizzes and flashcards to suit your learning preferences.
Related Documents
Description
Explore the key aspects of the General Data Protection Regulation (GDPR) that came into effect in May 2018. This quiz covers the rights of data subjects, the responsibilities of data controllers, and the changes from previous Data Protection Acts. Test your knowledge on how GDPR empowers individuals to control their personal data.