Data Protection Act

Data Subject: Anyone who has data stored about them.

Data Controller: Organisation storing data on data subjects. (e.g. Facebook)

Information Commissioner (ICO): Head of the data protection agency who ensures data controllers use data properly.

Principles:

  1. Data should be processed fairly and lawfully
  2. Data should only be used for the purpose specified in the data protection act
  3. Data should be relevant and not excessive
  4. Data should be accurate and up to date
  5. Data should only be kept as long as necessary
  6. Individuals have the right to see data stored about them
  7. Security must be in place to stop unauthorised access of data
  8. Data may not be transferred out of the EU unless the country has adequate data protection legislation

 

 

 

Leave a comment