Information Governance Technology

The request was successful.

Alexandra Burton

Dear Royal College of Art,

1. Does your organisation use any applications or software to record Record of Processing Activity (ROPA)?

If so, please state the product name(s) and version numbers(s) (if known)

2. Does your organisation use any applications or software to support preparation for, or maintenance of ISO 27001 and/or ISO 27701 compliance?

If so, please state the product name(s) and version numbers(s) (if known)

3. Does your organisation use any applications or software associated with data breach management?

4. Does your organisation use any applications or software associated with Freedom of Information management?

If so, please state the product name(s) and version numbers(s) (if known)

5. Does your organisation use any applications or software for Policy Management?

If so, please state the product name(s) and version numbers(s) (if known)

6. Does your organisation use any eLearning for Data Protection and Security Awareness?

If so, please state the product name(s) and version numbers(s) (if known)

7. Has your organisation reviewed / explored the market regarding the provision of technology which supports the delivery of Information Governance functions?

If yes - please specify what actions have been taken?

If no - does your organisation have any plans to review / explore this market in the next 3 years?

8. Has your organisation allocated budget / financial resources regarding the commissioning / procurement of technology which supports the delivery of Information Governance functions?

If yes - please specify what actions have been taken?

If no - does your organisation have any plans to allocate budget / financial resources in the next 3 years?

9. Has your organisation developed a business case (outline or otherwise) regarding the commissioning / procurement of technology which supports the delivery of Information Governance functions?

If yes - please specify what actions have been taken?

If no - does your organisation have any plans to develop a business case in the next 3 years?

10. Will there be any opportunities to engage with your organisation regarding the commissioning / procurement of technology which supports the delivery of Information Governance function in the next three years? If so, please explain how?

Yours faithfully,

Alexandra Burton

RCA Freedom of Information, Royal College of Art

Thank you for your enquiry under the Freedom of Information Act. We
acknowledge receipt of your email and will respond within 20 working days
with your response. Or alternatively, will be in touch to seek further
clarification from you about the information you require. 
You can find out more information about the Royal College of Arts in our
[1]Guide to published information. 
Yours sincerely,
Data Protection, Records and Information Officer

E: foi[2]@rca.ac.uk
[3]www.rca.ac.uk
[4]twitter.com/rca
[5]facebook.com/rca.london

Mailing address: Royal College of Art, Kensington Gore, London, SW7 2EU

[6]logo

--
Data Protection, Records and Information Officer

E: [7][Royal College of Art request email]
[8]www.rca.ac.uk
[9]twitter.com/rca
[10]facebook.com/rca.london

Mailing address: Royal College of Art, Kensington Gore, London, SW7 2EU

[11]logo

References

Visible links
1. https://www.rca.ac.uk/more/freedom-of-in...
2. mailto:[email address]
3. https://www.rca.ac.uk/
4. https://twitter.com/rca
5. https://facebook.com/rca.london
7. mailto:[Royal College of Art request email]
8. https://www.rca.ac.uk/
9. https://twitter.com/rca
10. https://facebook.com/rca.london

RCA Freedom of Information, Royal College of Art

Dear Alexandra, 

On 09 June 2023 you submitted the following request for information to the
Royal College of Art, please find our response below. 

1. Does your organisation use any applications or software to record
Record of Processing Activity (ROPA)?

If so, please state the product name(s) and version numbers(s) (if known)

2. Does your organisation use any applications or software to support
preparation for, or maintenance of ISO 27001 and/or ISO 27701 compliance?

If so, please state the product name(s) and version numbers(s) (if known)

3. Does your organisation use any applications or software associated with
data breach management?

4. Does your organisation use any applications or software associated with
Freedom of Information management?

If so, please state the product name(s) and version numbers(s) (if known)

 

5. Does your organisation use any applications or software for Policy
Management?

If so, please state the product name(s) and version numbers(s) (if known)

6. Does your organisation use any eLearning for Data Protection and
Security Awareness?

If so, please state the product name(s) and version numbers(s) (if known)

7. Has your organisation reviewed / explored the market regarding the
provision of technology which supports the delivery of Information
Governance functions?

If yes - please specify what actions have been taken?

If no - does your organisation have any plans to review / explore this
market in the next 3 years?

8. Has your organisation allocated budget / financial resources regarding
the commissioning / procurement of technology which supports the delivery
of Information Governance functions?

If yes - please specify what actions have been taken?

If no - does your organisation have any plans to allocate budget /
financial resources in the next 3 years?

9. Has your organisation developed a business case (outline or otherwise)
regarding the commissioning / procurement of technology which supports the
delivery of Information Governance functions?

If yes - please specify what actions have been taken?

If no - does your organisation have any plans to develop a business case
in the next 3 years?

10. Will there be any opportunities to engage with your organisation
regarding the commissioning / procurement of technology which supports the
delivery of Information Governance function in the next three years? If
so, please explain how?

Our response:

1. No. General multi-use packages are used.

2. No

3. No. General multi-use packages are used to record and report data
breaches. 

4. No. General multi-use packages are used to record FOI requests.

5. Basecamp

6. SCORM packages are used on a Moodle platform. 

CyberSafe has been purchased for roll out fr staff awareness and training.

7. Information not held.

8. No, information not held.

9. No, information not held.

10. Information not held.

If you are unhappy with the way your request has been handled, you may
make a complaint by writing to [1][Royal College of Art request email]. Your complaint will be
considered by an adjudicator who was not involved in the original
consideration of your request.

If you are not content with the outcome of your complaint, you may then
contact the Information Commissioner’s Office: Information Commissioner,
Wycliffe House, Water Lane, Wilmslow, Cheshire SK9 5AF.

Kind regards,

The FOI Team

Data Protection, Records and Information Officer

E: [2][Royal College of Art request email]
[3]www.rca.ac.uk
[4]twitter.com/rca
[5]facebook.com/rca.london

Mailing address: Royal College of Art, Kensington Gore, London, SW7 2EU

[6]logo

References

Visible links
1. mailto:[Royal College of Art request email]
2. mailto:[Royal College of Art request email]
3. https://www.rca.ac.uk/
4. https://twitter.com/rca
5. https://facebook.com/rca.london