wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Pearson 1CP2 - 5.2 - Legislation

Total questions: 35

Worksheet time: 18mins

Name
Class
Date
1.

Identify 3 items below that constitute personal data.

a)

Name or title

b)

Age / D.O.B

c)

Gender expression

d)

Breakfast choice

e)

Current year

2.

What term applies to any information relating to an identified or identifiable living person?

a)
confidential information
b)
private data
c)
sensitive details
d)
personal data
3.

Identify the type of data that is collected every time you post an update on social media, sign up for an online account, or use a web-based email service or a search engine.

a)

personal data

b)

private data

c)
sensitive data
d)

confidential data

4.

Often, social media companies analyse the personal data of their users to...

a)

Sell user data to third parties. This is common place and before advertising revenue this is often their largest source of income

b)

Decrease user engagement as the personal data can be used to identify which users don't actively use certain features

c)

Share personal data without consent, as you waiver any right when you sign up for an account

d)
Improve targeted advertising, enhance user experience, and increase engagement
5.

Social media websites will often use personal data such as your likes and recent viewing habbits in order to...

a)

personalise content and advertisements

b)
sell your data to third parties
c)
improve user experience
d)
enhance data security
6.

With your initial consent, your personal data can be...

a)

encrypted to ensure it is safe in the event of a data breach

b)

stored on a wide range of storage devices so the company has backups

c)

sold to or shared with 3rd parties

d)

deleted so you will never be able to access it

7.

One type of personal data, routinely collected, that many people may not be aware of is...

a)

Social Security Number data being used every time you apply for tax information or file your returns

b)

Credit card data that has been stored by companies you recently bought products from

c)

Biometric data such as your face being logged and stored by security systems e.g. surveillance

d)

Medical history data that will be stored on a hospital system

8.

Concerns over the safe / correct storage of peoples' personal data relates to...

a)

Data confidentiality

b)

Data insecurity

c)

Data privacy

d)

Data protection

9.

Concerns over personal data falling into the wrong hands relates to...

a)

data privacy

b)

personal information

c)

data security

d)

data safety

10.

What UK law relates to data privacy?

a)
General Data Protection Regulation (GDPR)
b)

Data Storage Act

c)
Privacy Shield Agreement
d)
Confidentiality Code
11.

As well as the GDPR what other UK law protects personal data?

a)
Data Privacy Regulation
b)
Data Protection Act 2018
c)
Data Protection Act 2016
d)
Personal Information Security Law
12.

What organisation introduced the GDPR?

a)
NATO
b)
World Health Organization
c)
United Nations
d)
European Union (EU)
13.

How many articles relating to the rights of individuals and the obligations of organisations are contained within the GDPR?

a)
200
b)
150
c)
50
d)
99
14.

In relation to the gathering of personal data, what term relates to organisations being required to ask or the permission if they are going to collect and process an individual's personal data.

a)

authorisation

b)
agreement
c)
consent
d)
approval
15.

What does the following mean about consent around personal data?

People must be able to say no. Organisations cannot require consent as a condition of using their services.

a)

Consent must be freely given by the individual

b)
Consent can be forced upon individuals
c)
Organisations can demand consent for any reason
d)
Consent is not necessary for using services
16.

What does the following mean about consent around personal data?

It should be made clear what data processing activities are being carried out with different pieces of information. For example, the use of email and IP addresses should require separate consent.

a)
Separate consent is not necessary for different data processing activities.
b)
Consent around personal data should be specific to each type of information being processed.
c)
Consent around personal data should be generic for all types of information.
d)
Consent around personal data should only be given once for all activities.
17.

What does the following mean about consent around personal data?

The person knows the identity of the organisation, what data processing activities will be carried out, the purpose of the data processing.

a)
Informed consent
b)
Uninformed consent
c)
Misinformed consent
d)
Disinformed consent
18.

What does the folloing mean in relation to the collection of personal data?

The individual the data relates to can withdraw their consent at any time

a)

Right to be revoked

b)
Right to data portability
c)
Right to request data deletion
d)
Right to refuse consent
19.

When visiting websites new users are often asked to consent to personal data being logged. In what form is this personal data usually stored?

a)
cookies
b)
cloud storage
c)
social media profiles
d)
databases
20.

How does the Data Protection Act 2018 refer to the individual who's data has been collected?

a)
data subject
b)
privacy subject
c)
information object
d)
data entity
21.

The operation of the data protection act is overseen by the...

a)
Information Commissioner's Office (ICO)
b)
Privacy Council
c)
Data Protection Agency
d)
Confidentiality Bureau
22.

The ICO (information comissioners office) can issue ??? if misuse of data or failure to comply has occured.

a)
warnings
b)
sanctions
c)
fines
d)
penalties
23.

What is the correct term for personal data falling into the wrong hands?

a)
data leak
b)
information spill
c)
data breach
d)
privacy breach
24.

Many organisations appoint an individual who oversees compliance with the GDPR and Data Protection act. This individual is referred to as...

a)
Data Protection Officer (DPO)
b)
Data Security Supervisor
c)
Data Privacy Manager
d)
Privacy Compliance Officer
25.

What does the Data Protection Act 2018 state in relation to how data is processed?

a)

Data can be processed without consent and doesn't require additional consent for it to be monetised

b)

Data can be shared without limitations, this includes outside of the UK

c)

Data can be stored indefinitely as long as consent is given at the time of collection

d)

Data must be processed lawfully, fairly, and transparently

26.

What does the Data Protection Act 2018 state in relation to how personal data must be used?

a)

Personal data must be used for the specified and explicit purpose it was collected

b)

Personal data can be stored indefinitely and can be used for a wide range of different purposes

c)
Personal data can be shared with third parties without limitations
d)

Personal data can be used without consent provided a third party advocates for the data subject

27.

What does the Data Protection Act 2018 state in relation to how correct personal data is?

a)
Personal data accuracy is not a concern under the Data Protection Act 2018
b)
Personal data must be accurate and, where necessary, kept up to date.
c)
Personal data can be inaccurate as long as it is not shared with third parties
d)
Personal data accuracy is only required for certain age groups
28.

What does the Data Protection Act 2018 state in relation to how long personal data can be stored?

a)

Data should be stored for at least 10 years and then a decision must be made

b)

Data should not be stored for longer than necessary

c)

Data can be stored indefinitely, provided the data subject is alive

d)

Data can be stored without any limitations, but must be destroyed in the event of death

29.

What does the Data Protection Act 2018 state in relation to the data subject agreeing to have their data collected and stored?

a)
The data subject can only give consent verbally for their data to be stored.
b)
The data subject must give explicit consent for their data to be stored.
c)
The data subject does not need to give consent for their data to be stored.
d)
The data subject can give consent for their data to be stored without being informed.
30.

What does the Data Protection Act 2018 state in relation to security?

a)

Personal data must be processed securely, including ensuring security measures are in place against breaches

b)

Personal data must be processed insecurely. It doesn't matter too much as they have already given consent, so they freely yeilded their details

c)

Data should be shared without any security measures. This can be as simple as encrypting a USB memory stick to transfer data

d)

Security measures are optional when handling personal data. It is important to not get fined but companies have no obligation in real-terms

31.

The unauthorised access of computers and servers is called...

a)
phishing
b)
cracking
c)

fracking

d)
hacking
32.

What aspect of the computer misuse act does the below relate to?

Using a computer to attempt to access a program or data to which you know you are not authorised.

a)

Unauthorised login

b)

Unauthorised access

c)
Illegal entry
d)

Unauthorised intrusion

33.

Which aspect of the computer misuse act does the below statement relat to?

Hacking into a computer in order to access personal details, with the intention of committing identity theft.

a)

Unauthorised use of computer systems

b)

Unauthorised access with the intent to commit further crimes

c)

Unauthorised interception of communications

d)

Unauthorised modification of computer material

34.

What aspect of the computer misuse act does the below statement relate to?

Creating a virus and then plutting it onto someone else's computer.

a)

Hacking into a computer with the intention to commit mischief

b)

Sharing personal information online with the intention to profit from a third party

c)

Intentional and unauthorised destruction of software and data

d)

Intentional and unauthorised disruption of a computer network

35.

What is the term that relates to behaving in a moral / correct way?

a)
righteous
b)
virtuous
c)
ethical
d)
moralistic