Lesson 1.5.1a

1.5.1a Data Protection Act 1998 and Computer Misuse Act 1990 Quiz: OCR Computer Science, Unit 5

20 questions

In partnership with Revision Ninja

Lesson 1.5.1a, Data Protection Act 1998 and Computer Misuse Act 1990: 20 multiple choice questions for the OCR Computer Science (H446), Unit 5: Legal, moral, cultural and ethical issues, written with Revision Ninja.

Host it live on the board and students join with a game code on their own devices, or revise alone with Free Play. The answers are revealed in the game.

Host this setFree Play

The 20 questions

  1. How many key data protection principles are specified in the Data Protection Act 1998?

    • Eight
    • Twelve
    • Ten
    • Six
  2. What term describes the individual whose personal data is collected and processed under the DPA?

    • Data commissioner
    • Data subject
    • Data processor
    • Data controller
  3. What title is given to the person or organisation determining how personal data is processed?

    • Data controller
    • Data subject
    • Data user
    • Data subject supervisor
  4. Which independent officer is responsible for enforcing data protection legislation in the UK?

    • Data Controller
    • Information Commissioner
    • Chief Security Officer
    • Home Secretary
  5. Under DPA 1998, personal data processed for any purpose must not be kept longer than what?

    • Five years
    • One year
    • Ten years
    • Necessary
  6. According to the DPA 1998, personal data transferred outside which region requires adequate protection?

    • United Kingdom
    • British Isles
    • European Economic Area
    • European Union
  7. Which DPA 1998 principle requires personal data to be accurate and, where necessary, kept what?

    • Confidential
    • Encrypted
    • Anonymised
    • Up to date
  8. Under the DPA 1998, personal data held by an organisation must be adequate, relevant and not what?

    • Shared
    • Excessive
    • Duplicated
    • Complex
  9. What basic offence is defined under Section 1 of the Computer Misuse Act 1990?

    • Unauthorised modification
    • Unauthorised access
    • Blackmail
    • Intentional damage
  10. Section 2 of the Computer Misuse Act 1990 covers unauthorised access with intent to do what?

    • Delete files
    • Commit further offences
    • Modify software
    • Sell hardware
  11. What specific act is prohibited under Section 3 of the Computer Misuse Act 1990?

    • Unauthorised modification
    • Data theft
    • Unauthorised copying
    • Unauthorised viewing
  12. Guessing a colleague's password to read their private files breaks which UK law?

    • Data Protection Act
    • Freedom of Information
    • Copyright Act
    • Computer Misuse Act
  13. A company storing out-of-date customer addresses breaches which DPA 1998 requirement?

    • Security
    • Accuracy
    • Relevance
    • Lawfulness
  14. Deploying ransomware to lock a company server violates which section of the Computer Misuse Act?

    • Section 3
    • Section 1
    • Section 4
    • Section 2
  15. What formal request allows an individual to see all personal data held about them?

    • Subject access request
    • Freedom of information
    • Public disclosure request
    • Data freedom request
  16. Stealing employee passwords to commit bank fraud violates which section of the Computer Misuse Act?

    • Section 1
    • Section 5
    • Section 3
    • Section 2
  17. Leaving unencrypted USB drives containing customer data on public transport violates which DPA 1998 principle?

    • Fair processing
    • Storage limitation
    • Security
    • Data minimisation
  18. Which legislation's primary goal is protecting individuals from misuse of their personal information?

    • Computer Misuse Act
    • Data Protection Act
    • Freedom of Information
    • Copyright Act
  19. Creating and spreading a computer worm that crashes network routers violates which legislation?

    • Data Protection Act
    • Computer Misuse Act
    • Telecommunications Act
    • Copyright Act
  20. Under the DPA 1998, personal data must be collected for specified, explicit and what purposes?

    • Lawful
    • Commercial
    • Permanent
    • Public

All OCR Computer Science quizzes