...

Statement and purpose of policy

Data protection principles

We will only collect personal data to the extent required for the specific purpose notified to the data subject.

  1. accurate and the Employer takes all reasonable steps to ensure that information that is inaccurate is rectified or deleted without delay. Checks to personal data will be made when collected and regular checks must be made afterwards. We will make reasonable efforts to rectify or erase inaccurate
  2. kept only for the period necessary for processing. Information will not be kept longer than it is needed and we will take all reasonable steps to delete information when we no longer need it. For guidance on how long particular information should be kept, contact the Office Manager , or request a copy of our Data retention
  3. secure, and appropriate measures are adopted by the Employer to ensure as such.

Who is responsible for data protection and data security?

  1. Maintaining appropriate standards of data protection and data security is a collective task shared between us and you. This policy and the rules contained in it apply to all staff of the Employer, irrespective of seniority, tenure and working hours, including all employees, directors and officers, consultants and contractors, casual or agency staff, trainees, homeworkers and fixed-term staff and any volunteers (Staff).
  2. Questions about this policy, or requests for further information, should be directed to the Office Manager .
  3. All Staff have personal responsibility to ensure compliance with this policy, to handle all personal data consistently with the principles set out here and to ensure that measures are taken to protect the data security. Managers have special

responsibility for leading by example and monitoring and enforcing compliance. The Office Manager must be notified

if this policy has not been followed, or if it is suspected this policy has not been followed, as soon as reasonably practicable.

  1. Any breach of this policy will be taken seriously and may result in disciplinary action up to and including dismissal. Significant or deliberate breaches, such as accessing Staff or customer personal data without authorisation or a legitimate reason to do so, may constitute gross misconduct and could lead to dismissal without

What personal data and activities are covered by this policy?

What personal data do we process about Staff?

  1. home address,contact details and contact details for your next of kin;
  2. recruitment (including your application form or curriculum vitae, references received and details of your qualifications);
  3. pay records, national insurance number and details of taxes and any employment benefits such as pension and health insurance (including details of any claims made);
  4. telephone, email, internet, fax or instant messenger use;

Sensitive personal data

  1. processing relates to personal data which are manifestly made public by the data
  2. the processing is necessary for the establishment, exercise, or defence or legal claims; or
  3. the processing is necessary for reasons of substantial public

How we use your personal data

Accuracy and relevance

Storage and retention

Individual rights

  1. your rights of rectification or erasure of data, or to restrict or object to processing;
  2. your right to right to complain to the Information Commissioner if you think we have failed to comply with your data protection rights; and
  3. whether or not we carry out automated decision-making and the logic involved in any such decision
  4. We will provide you with a copy of the personal data undergoing processing. This will normally be in electronic form if you have made a request electronically, unless you agree otherwise.
  5. To make a subject access request, contact us at enquiries@florins-drycleaners.co.uk
  6. We may need to ask for proof of identification before your request can be processed. We will let you know if we need to verify your identity and the documents we
  7. We will normally respond to your request within 28 days from the date your request is received. In some cases, eg where there is a large amount of personal data being processed, we may respond within 3 months of the date your request is received. We will write to you within 28 days of receiving your original request if this is the
  8. If your request is manifestly unfounded or excessive, we are not obliged to comply with
  1. stop processing data for a period if data is inaccurate or if there is a dispute about whether or not your interests override the Employer’s legitimate grounds for processing the data.
  2. To request that we take any of these steps, please send the request to enquiries@florins-drycleaners.co.uk.

Data security

  1. Any desk or cupboard containing confidential information must be kept
  2. Computers should be locked with a strong password that is changed regularly or shut down when they are left unattended and discretion should be used when viewing personal information on a monitor to ensure that it is not visible to others.
  3. Data stored on CDs or memory sticks must be encrypted or password protected and locked away securely when they are not being used.
  4. The Office Manager must approve of any cloud used to store
  5. Data should never be saved directly to mobile devices such as laptops, tablets or
  6. All servers containing sensitive personal data must be approved and protected by security
  7. Servers containing personal data must be kept in a secure location, away from general office
  8. Data should be regularly backed up in line with the Employer’s back-up
  1. the identity of any telephone caller must be verified before any personal information is disclosed;
  2. if the caller’s identity cannot be verified satisfactorily then they should be asked to put their query in writing;
  3. do not allow callers to bully you into disclosing information. In case of any problems or uncertainty, contact the Office Manager .

Data impact assessments

Data breaches

Individual responsibilities

Training

Seraphinite AcceleratorOptimized by Seraphinite Accelerator
Turns on site high speed to be attractive for people and search engines.