4.1 Legislation
4.1.1 Health and Safety legislation
Health and Safety at Work Act
Employers must:
- Provide a safe working environment
- Ensure staff are properly trained
- Provide adequate welfare facilities
- Give relevant information, instruction, and supervision
Manual Handling Operations
Key requirements include:
- Avoid hazardous manual handling where possible
- Assess unavoidable manual handling tasks
- Provide information on load weight and centre of gravity
- Reduce risk of injury as far as reasonably practicable
Work at Height Regulations
Employers must ensure:
- Work is properly planned and supervised
- Competent people carry out the work
- Work is done from the ground where possible
- Safe access and exit
- Equipment is suitable and stable
- Protection from falling objects
- Emergency rescue procedures are in place
Display Screen Equipment (DSE)
Employers must:
- Carry out workstation assessments
- Reduce risks and encourage breaks
- Provide eye tests on request
- Provide training and information
4.1.2 Health and safety risks when working with digital systems
Risks and Preventative Measures
Possible risks:
- Using display screen equipment
- Working at height
- Cable installation
- Manual handling
- General health and safety hazards
- Adequate training
- Safe working environments
- Provision of appropriate safety equipment
- Safe working practices
- Relevant information, instruction, and supervision
4.1.3 Data security and protection legislation
Data Protection Act / GDPR
The purpose of data protection legislation is to protect personal data.
It is based on eight key principles including lawfulness, accuracy, security, and accountability.
Organisations are responsible for protecting personal data, while individuals have rights over how their data is used.
It is based on eight key principles including lawfulness, accuracy, security, and accountability.
Organisations are responsible for protecting personal data, while individuals have rights over how their data is used.
4.1.4 Computer Misuse legislation
Computer Misuse Act (1990)
The Computer Misuse Act covers offences such as:
Organisations and employees can face criminal and disciplinary consequences. Employee awareness is essential.
- Unauthorised access to computer systems
- Unauthorised modification of data
- Intent to impair system operation
Organisations and employees can face criminal and disciplinary consequences. Employee awareness is essential.
4.1.5 Equality legislation
Equality Act
The Equality Act protects individuals based on nine characteristics.
Types of discrimination include:
Protection applies in employment and service provision. Claims must be made within specified time limits.
Types of discrimination include:
- Direct discrimination
- Indirect discrimination
- Harassment
- Victimisation
Protection applies in employment and service provision. Claims must be made within specified time limits.
4.1.6 Intellectual Property legislation
Intellectual Property
Intellectual property legislation protects:
- Unregistered designs
- Registered designs
- Patents
4.1.7 Interrelationships and impact
Relationship Between Software Development and Legislation
Digital software development is closely governed by legislation to
ensure systems are safe, secure, and fair.
Developers must design and maintain software that complies with:
Developers must design and maintain software that complies with:
- Data protection and privacy legislation
- Computer misuse and cybercrime laws
- Health and safety requirements
- Equality and accessibility legislation
- Intellectual property rights
4.1.8 Interrelationship between digital support and legislation
Impact and Judgement
Digital support and security professionals must comply with
legislation to protect organisations, individuals, and society.
Judgements must consider legal, ethical, and operational impacts.