What is GDPR?
EU General Data Protection Regulation
What is the purpose of GDPR?
Protects citizens personal data
What constitutes personal data?
any information relating to a person / Data Subject that can be used to identify them
EG names, photos, email addresses, bank details
Examples of personal data under GDPR that could apply to property companies?
To what organisations does GDPR apply?
All organisations with more than 250 employees
What are penalties for GDPR breaches?
4% of annual global turnover or 20 million euros (whichever is greater)
What is the ‘right to access’ under GDPR?
Individuals have the right to obtain confirmation that their data is being processed, and to access their personal data
What is a breach notification under GDPR?
How are data breaches typically discovered?
How have consent conditions been strengthened under GDPR?
What is the ‘right to be forgotten’ under GDPR?
Individuals have right to have personal data erased in certain circumstances
- data no longer necessary
- data been processed unlawfully
What is data portability?
right for data subject to receive personal data concerning them, which they have previously provided, and have it transferred to another controller
What is privacy by design?
Data Protection Officer
Examples of data held by surveying practices?
What are obligations imposed by GDPR?
Who regulates GDPR in the U.K.?
Information Commissioner’s Office
RICS best practice points for complying with GDPR?
What are your company policies for data protection breaches?
RICS recommendations for using confidential information?
What information should be included in firms privacy notice?
When did GDPR come into effect?
25 May 2018
What Act implemented GDPR in the UK?
Data Protection Act 2018
(replaced Data Protection Act 1998)
What are the 7 principles of Data Protection Act 2018?