PRIVACY CHANGES: LESS THAN ONE MONTH TO GO!

Size: px
Start display at page:

Download "PRIVACY CHANGES: LESS THAN ONE MONTH TO GO!"

Transcription

1 PRIVACY CHANGES: LESS THAN ONE MONTH TO GO! On 12 March 2014, the amendments to the Privacy Act will become effective. These amendments make significant changes to compliance. Many charities and not-for-profits are affected by these changes. You may have attended our breakfast seminar series last year in which we set out the changes and sought to identify the ways in which they make impact upon your organisation. On and from 12 March you will need to be compliant. If we can provide any assistance in this regard either by way of preliminary advice or to assist you in ensuring compliance, please do not hesitate to contact Damian Ward on or If you need to comply with the privacy legislation, it is important you take immediate steps. Following is a price list for services we offer and a checklist for you to assist in identifying your needs. List of Services and Proposal in relation to compliance with the Privacy Act We set out in the table below services we offer at fixed prices in relation to Privacy compliance in the NFP and Charity sector with the soon to be operational legislative forms. COMPLIANCE DOCUMENTS Drafting a privacy policy in compliance with the upcoming amendments due to come into force in March 2014 under the Privacy Act 1988 including a complaints policy and disclosure notice. This is a complete suite of documents necessary for compliance. $2,750 plus GST EXECUTIVE TRAINING - WORKSHOP The implications of privacy law workshop. This workshop will take between 2 ½ - 3 hours and addresses the following issues: What is privacy? The Australian privacy principles and what they mean. Risk management. Managing systems to ensure compliance. Best practice rules. Q and A. Practical examples. $399 plus GST per person (a maximum of 10 people per workshop session do not all need to be from your organisation) Page 1

2 TRAINING YOUR TEAM Training your team (either at your site or at Mills Oakley) on the basics of the privacy regime. Educating your staff as to the do s and don ts and dealing with the private information of individuals is a key to ongoing compliance. This is a one hour seminar targeted at giving your employees a road map as to what they can and can t do in relation to the private information of others. $1,500 per training session for up to 12 people (plus incidental costs if at your site) Larger groups are more cost effective - we can provide you with a price on application for a larger group. COMPLAINTS PROCESSING SYSTEMS WORKSHOP Having an effective and practically useful complaints handling system in relation to potential infringements of the privacy of individuals is a key component of ongoing compliance with the legislation. This workshop, again for senior members of staff, will run for 2 2 ½ hours and addresses: The mandatory requirements for a complaint registration system under the legislation. The implementation and effective conduct of a complaints management system. Issues of procedural fairness and practical operational issues around dealing with complaints. Risk management. Real life case examples. Dealing with the office of the Australian Information Commissioner the regulator. Q and A. $399 plus GST per person. (maximum of 10 per workshop) All sessions will end with attendees taking home materials to reinforce what has been discussed. We will provide lunch at the end of each of the workshops. If we need to travel to present a workshop or seminar, an additional charge for each attendee on a pro rata basis will be made at cost. Page 2

3 Privacy Compliance Check List The reforms to the Privacy Act 1988 will commence on 12 March 2014 (reforms). Among other changes to the statutory privacy regime, these reforms will unify the existing National Privacy Principles (applicable to private sector organisations) and Information Privacy Principles (applicable to agencies and government organisations) into a single set of 13 Australian Privacy Principles (APPs). Review the checklist below to ensure you are compliant with the CHECKLIST YES NO ACTIONS 1 Does your organisation deal with individual s health information, have an annual turnover of $3 million or more or adopt best practice with regard to privacy? 2 Does your organisation handle personal information or sensitive information about others? 3 Do you have an organisational understanding of the differences between personal and sensitive information? 4 Do you have a privacy policy that is compliant with the reforms? 5 Do you take steps to implement new practices, procedures and systems to ensure compliance with the APPs and any applicable binding APP code? Determine whether your organisation is subject to the APPs and required to or should comply with the Review information held to determine whether and what personal and/or sensitive information is held. Provide training to staff about appropriate information handling procedures, systems and processes. Draft or update your privacy policy and ensure it is available in an appropriate form and free of charge. Review practices, procedures and systems to ensure they are transparent, up to date and compliant with the 6 Do you have a privacy officer? Appoint a privacy office to ensure an operationally effective way of handling privacy issues and complaints. 7 Do you have a system to allow individuals to interact with you anonymously or by a pseudonym? If no, is it impractical or otherwise impossible to do so given the nature of your activities? 8 Do you receive unsolicited personal information? 9 Do you disclose personal or sensitive information? If yes, does your privacy policy explain the purposes for which you disclose such information? Unless an exception applies under the Privacy Act, you must allow individuals to interact with your organisation anonymously or by using a pseudonym. Review practices for handling, de-identifying and destroying unsolicited personal information. Review processes and systems to ensure that any personal or sensitive information held is only used and disclosed for lawful purposes and in compliance with the Page 3

4 CHECKLIST YES NO ACTIONS 10 If your organisation engages in direct marketing, are you compliant with the reforms? 11 Does your organisation send or store personal information overseas? 12 Do you have a security regime for the protection of personal information from misuse, interference, loss and unauthorised access, modification or disclosure? 13 Do you have systems and procedures in place for dealing with destruction or deidentification of personal information? 14 Are all of your processes for dealing with privacy and personal and sensitive information transparent, efficient and timely? 15 Do you have processes in place to correct inaccurate personal information, whether requested by individuals or otherwise? 16 Do you have a complaints handling procedure that is compliant with the reforms? Review direct marketing practices to ensure compliance with the reforms and ensure a functional opt-out mechanism is available Review practices, procedures and systems for sending personal information overseas, including implementing appropriate arrangements with overseas recipients to ensure compliance with the Implement practices and systems to prevent misuse, interference, loss of and unauthorised access to, modification or disclosure of personal information held. Review practices and procedures to ensure personal information is destroyed or de-identified when no longer needed. Implement processes for correcting personal information and ensuring it is accurate, up to date and complete. Implement procedures for responding to access requests for personal information that are timely and compliant with the Review practices and procedures for dealing with complaints and inquiries about privacy. Page 4

5 Privacy - Cheat Sheet 1. There is a wide amount of information you may collect about others (either directly or indirectly) that fall within the Privacy Act 1988 and its provisions. 2. Ensure you have a privacy policy which addresses all of the APPs. 3. Ensure you have systems and procedures which allow for day-to-day compliance with the APPs. In particular focus on a compliant complaints system, requests for access to private information, correcting private information and the independent obligation to have to update, correct and maintain the accuracy of information. 4. Direct marketing in addition to other legal obligations (i.e. Spam Act) ensure you do not use or disclose information for direct marketing in breach of the relevant principles. 5. Maintain the quality of personal information about individuals this is whether they ask for information to be corrected or not. 6. If you no longer need information, make sure you can destroy it or de identify it as is appropriate. 7. Transparency is key in relation to each of: a. Privacy Policies; b. Notification of collection of personal information; c. Use and disclosure; d. Access to personal information; and e. Inadvertent or mistaken disclosures. Contact Us Damian Ward Partner Commercial Litigation & IP T: (02) E: dward@millsoakley.com.au Vera Visevic Partner Not for Profit T: (02) E: vvisevic@millsoakley.com.au Page 5

PRIVACY POLICY GENERAL

PRIVACY POLICY GENERAL Introduction PRIVACY POLICY GENERAL From time to time Tamworth Taxis is required to collect, hold, use and/or disclose personal information relating to individuals (including, but not limited to, its members,

More information

AMA SKILLS TRAINING. PRIVACY Policy & Procedure

AMA SKILLS TRAINING. PRIVACY Policy & Procedure AMA SKILLS TRAINING PRIVACY Policy & Procedure Objective This policy describes the practices and procedures by which AMA Skills Training will ensure the compliance with the relevant privacy legislation

More information

Privacy Policy PURPOSE SCOPE POLICY. Data Collection

Privacy Policy PURPOSE SCOPE POLICY. Data Collection Privacy Policy PURPOSE 1. To ensure Training & Assessment Mentor maintains the privacy of personal information provided to Training & Assessment Mentor from Staff and Students. SCOPE 2. This document describes

More information

Privacy Policy and Disclosure Statement

Privacy Policy and Disclosure Statement 1. Introduction Privacy Policy and Disclosure Statement 1.1 From time to time MineSet Recruitment Pty Ltd (ABN 53 613 343 338) ("Company") is required to collect, hold, use and/or disclose Personal Information

More information

Information Collection & Privacy Policy

Information Collection & Privacy Policy The Privacy Act 1988 (Cth) (Privacy Act) seeks to protect individuals against interferences with their privacy by regulating the way in which personal information is collected, handled, disclosed, used

More information

CDMS Consulting Engineers Privacy Policy

CDMS Consulting Engineers Privacy Policy CDMS Consulting Engineers Privacy Policy This Privacy Policy sets out the approach Design Engineering P t y L t d trading as CDMS Consulting Engineers (CDMS) will take in relation to the treatment of Personal

More information

PRIVACY POLICY. Your Village Pty Ltd ABN ( Steam Capital ) is committed to protecting your privacy.

PRIVACY POLICY. Your Village Pty Ltd ABN ( Steam Capital ) is committed to protecting your privacy. PRIVACY POLICY 1. Overview Your Village Pty Ltd ABN 31 010 442 770 ( Steam Capital ) is committed to protecting your privacy. Steam Capital is bound by the Privacy Act 1988 (Cth) ( the Privacy Act ), including

More information

Self-Assessment Questionnaire Controllers

Self-Assessment Questionnaire Controllers Preparing for The Data Protection (Bailiwick of Guernsey) Law, 2017 Self-Assessment Questionnaire Controllers 1. The current data protection legislation the Data Protection (Bailiwick of Guernsey) Law,

More information

Privacy Policy - RevTech Media Pty Ltd ABN Who we are

Privacy Policy - RevTech Media Pty Ltd ABN Who we are Privacy Policy - RevTech Media Pty Ltd ABN 75 150 963 474 1. Who we are RevTech Media Pty Ltd ( RevTech Media, we, our, us) (ABN 75 150 963 474) (AFSL 455982) (ACL 405918) (RevTech Media) is a media and

More information

BAYER AUSTRALIA POLICY PRIVACY

BAYER AUSTRALIA POLICY PRIVACY BAYER AUSTRALIA POLICY PRIVACY Policy Owner: Law, Patents & Compliance Policy Effective: 10 June 2015 Last Reviewed: 20 October 2015 Policy Approved By: CGC TABLE OF CONTENTS 1. SCOPE...3 2. PURPOSE...3

More information

Self-Assessment Questionnaire Processors

Self-Assessment Questionnaire Processors Preparing for The Data Protection (Bailiwick of Guernsey) Law, 2017 Self-Assessment Questionnaire Processors 1. The current data protection legislation the Data Protection (Bailiwick of Guernsey) Law,

More information

PRIVACY POLICY WHAT IS PERSONAL INFORMATION AND WHAT KINDS OF PERSONAL INFORMATION DOES ADECCO COLLECT?

PRIVACY POLICY WHAT IS PERSONAL INFORMATION AND WHAT KINDS OF PERSONAL INFORMATION DOES ADECCO COLLECT? PRIVACY POLICY This policy applies to all Australian corporations which are members of the Adecco Group of companies, and to any overseas members of the Group to the extent that those overseas corporations

More information

PREPARING FOR THE GENERAL DATA PROTECTION REGULATION. SELF-ASSESSMENT QUESTIONNAIRE Data Controllers

PREPARING FOR THE GENERAL DATA PROTECTION REGULATION. SELF-ASSESSMENT QUESTIONNAIRE Data Controllers PREPARING FOR THE GENERAL DATA PROTECTION REGULATION SELF-ASSESSMENT QUESTIONNAIRE Data Controllers 1. The current data protection legislation the Data Protection (Bailiwick of Guernsey) Law, 2001 and

More information

OLA Privacy Policy for Australia

OLA Privacy Policy for Australia OLA Privacy Policy for Australia 1. Respecting your privacy OLA Australia Pty Ltd and its related bodies corporate (including its ultimate holding company, ANI Technologies Private Limited) (the OLA Group)

More information

General Data Protection Regulation. What should community energy organisations be doing to prepare?

General Data Protection Regulation. What should community energy organisations be doing to prepare? General Data Protection Regulation What should community energy organisations be doing to prepare? The implementation date of 25 May 2018 for the General Data Protection Regulation (GDPR) is fast approaching.

More information

DATA PROTECTION POLICY

DATA PROTECTION POLICY DATA PROTECTION POLICY Operational Owner: Executive Owner: James Newby Data Protection Officer Sarah Litchfield Senior Information Risk Officer Effective date: 25 th May 2018 Review date: May 2021 Related

More information

1. Netball Australia's commitment to privacy and application of this Privacy Policy

1. Netball Australia's commitment to privacy and application of this Privacy Policy NETBALL AUSTRALIA PRIVACY POLICY 1. Netball Australia's commitment to privacy and application of this Privacy Policy 1.1 Netball Australia Limited (ACN 003 142 818) (Netball Australia) is the governing

More information

SAFFRON WALDEN COMMUNITY CHURCH DATA PROTECTION POLICY. Adopted: [ ]

SAFFRON WALDEN COMMUNITY CHURCH DATA PROTECTION POLICY. Adopted: [ ] SAFFRON WALDEN COMMUNITY CHURCH DATA PROTECTION POLICY Adopted: [17-04-2018] 1 SAFFRON WALDEN COMMUNITY CHURCH is committed to protecting all information that we handle about people we support and work

More information

DATA PROTECTION POLICY 2018

DATA PROTECTION POLICY 2018 DATA PROTECTION POLICY 2018 Amesbury Baptist Church is committed to protecting all information that we handle about people we support and work with, and to respecting people s rights around how their information

More information

RAW MARKETING DATA PROTECTION POLICY

RAW MARKETING DATA PROTECTION POLICY RAW MARKETING DATA PROTECTION POLICY Introduction We take your privacy very seriously and have updated our Privacy Statement in line with the upcoming GDPR regulation. Were absolutely committed to reflecting

More information

NEW LIFE BAPTIST CHURCH NORTHALLERTON DATA PROTECTION POLICY. Adopted: 20 June 2018 To be reviewed: June 2021

NEW LIFE BAPTIST CHURCH NORTHALLERTON DATA PROTECTION POLICY. Adopted: 20 June 2018 To be reviewed: June 2021 NEW LIFE BAPTIST CHURCH NORTHALLERTON DATA PROTECTION POLICY Adopted: 20 June 2018 To be reviewed: June 2021 NEW LIFE BAPTIST CHURCH, NORTHALLERTON (referred to in this policy as NLBC) is committed to

More information

This policy is a public document and has been prepared in light of National Privacy Principle 5, Openness.

This policy is a public document and has been prepared in light of National Privacy Principle 5, Openness. PRIVACY POLICY This document relates to your personal information, collected by Biarri as part of the Subscriber sign up process and your use of Biarri services, and held by Biarri as part of our day-to-day

More information

Why does AM collect personal information?

Why does AM collect personal information? Alternative Media ( AM ) is committed to protecting the privacy and personal information of its customers. This Privacy Policy describes the practices and processes AM has in place to properly manage and

More information

A PRACTICAL GUIDE FOR HOW AN ADVERTISER CAN PREPARE FOR GDPR JANUARY 2018

A PRACTICAL GUIDE FOR HOW AN ADVERTISER CAN PREPARE FOR GDPR JANUARY 2018 A PRACTICAL GUIDE FOR HOW AN ADVERTISER CAN PREPARE FOR GDPR JANUARY 2018 1 PURPOSE OF THIS DOCUMENT 2 This document is to be used as a guide for advertisers on how they should work with their agencies,

More information

Data Protection Policy

Data Protection Policy Preston and District Data Protection Policy The University of the Third Age Scope of the policy This policy applies to the work of Preston & District U3A (hereafter the U3A ). The policy sets out the requirements

More information

Privacy. Code (Market and Social Research) Association of Market and Social Research Organisations, February

Privacy. Code (Market and Social Research) Association of Market and Social Research Organisations, February Privacy (Market and Social Research) Code 2014 Association of Market and Social Research Organisations, February 2014 1 Contents A. PREAMBLE P. 2 B. OBJECTIVES P. 4 C. ELIGIBILITY AND COVERAGE [S26C(3)]

More information

Scottish Charity Number SC Dingwall Baptist Church DATA PROTECTION POLICY

Scottish Charity Number SC Dingwall Baptist Church DATA PROTECTION POLICY Dingwall Baptist Church DATA PROTECTION POLICY Adopted: By Trustees Dingwall Baptist Church May 2018 1 Dingwall Baptist Church is committed to protecting all information that we handle about people we

More information

EARLS HALL BAPTIST CHURCH DATA PROTECTION POLICY

EARLS HALL BAPTIST CHURCH DATA PROTECTION POLICY EARLS HALL BAPTIST CHURCH DATA PROTECTION POLICY Adopted: 5 June 2018 1 Earls Hall Baptist Church is committed to protecting all information that we handle about people we support and work with, and to

More information

Preparing for the GDPR

Preparing for the GDPR Preparing for the GDPR Note: These slides and the accompanying presentation contain a general summary and are not legal advice. Niall Rooney 03/11/2017 (1) Data Protection The Right to Data Protection

More information

Section a What this Policy is for Policy Statement. 2. Why this policy is important... 3

Section a What this Policy is for Policy Statement. 2. Why this policy is important... 3 Norwich Central Baptist Church DATA PROTECTION POLICY Adopted: May.2018 Norwich Central Baptist Church (NCBC) is committed to protecting all information that we handle about people we support and work

More information

A Practical Guide to Data Protection for Information Professionals

A Practical Guide to Data Protection for Information Professionals A Practical Guide to Data Protection for Information Professionals Naomi Korn and Carol Tullo on behalf of NKCC NKCC 2018. All Rights Reserved. www.naomikorn.com The information contained within this document

More information

GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges

GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges GDPR and Canadian organizations: Addressing key challenges Cyber Risk 1 GDPR and Canadian organizations: Addressing key challenges The regulation

More information

What you need to know. about GDPR. as a Financial Broker. Sponsored by

What you need to know. about GDPR. as a Financial Broker. Sponsored by What you need to know about GDPR as a Financial Broker Dear Partner The regulatory and compliance environment is ever changing and the burden and requirements on financial services professionals continues

More information

PRIVACY NOTICE Potential Staff / Graduate Recruitment May 2018

PRIVACY NOTICE Potential Staff / Graduate Recruitment May 2018 PRIVACY NOTICE Potential Staff / Graduate Recruitment May 2018 Who Are We? APUC (Advanced Procurement for Universities and Colleges) Limited is the procurement centre of expertise for Scotland s Universities

More information

GENERAL DATA PROTECTION REGULATION.

GENERAL DATA PROTECTION REGULATION. For the use of mortgage intermediaries and other professionals only. GENERAL DATA HALIFAX INTERMEDIARIES KEY CHANGES GUIDE MAY 2018 REGULATION >SELECT A TILE FOR MORE INFORMATION WHAT IS THE GDPR? KEY

More information

City of Atlanta Ethics Office Work Plan

City of Atlanta Ethics Office Work Plan City of Atlanta Ethics Office 2010-2011 Work Plan The Ethics Officer, in conjunction with the City of Atlanta s Board of Ethics, proposes a two-year work plan for the calendar years 2010 and 2011. This

More information

Mobile Connect Privacy Principles

Mobile Connect Privacy Principles Mobile Connect Privacy Principles Version 2.5 11 September 2017 1 Introduction Mobile phones and other connected devices are increasingly the main way through which people access the digital world and

More information

THE COMPETITION AND CONSUMER PROTECTION COMMISSION JOB APPLICANT PRIVACY NOTICE 1. INTRODUCTION... 2

THE COMPETITION AND CONSUMER PROTECTION COMMISSION JOB APPLICANT PRIVACY NOTICE 1. INTRODUCTION... 2 THE COMPETITION AND CONSUMER PROTECTION COMMISSION JOB APPLICANT PRIVACY NOTICE CONTENT 1. INTRODUCTION... 2 2. IDENTITY OF THE CONTROLLER OF PERSONAL INFORMATION... 2 3. CONTACT DETAILS OF THE DATA PROTECTION

More information

Baptist Union of Scotland DATA PROTECTION POLICY

Baptist Union of Scotland DATA PROTECTION POLICY Baptist Union of Scotland DATA PROTECTION POLICY Adopted: May 2018 1 1.The Baptist Union of Scotland 48, Speirs Wharf, Glasgow G4 9TH (Charity Registration SC004960) is committed to protecting all information

More information

Training Manual. DATA PROTECTION ACT 2018 (DPA18) Incorporating General Data Protection Regulations (GDPR) Data Protection Officer is Mike Bandurak

Training Manual. DATA PROTECTION ACT 2018 (DPA18) Incorporating General Data Protection Regulations (GDPR) Data Protection Officer is Mike Bandurak PROFESSIONAL INDEPENDENT ADVISERS LTD DATA PROTECTION ACT 2018 (DPA18) Incorporating General Data Protection Regulations (GDPR) Training Manual Data Protection Officer is Mike Bandurak GDPR introduction

More information

Commonwealth Digital Transformation Agency (DTA) Initial Privacy Impact Assessment (PIA) for the Trusted Digital Identity Framework (TDIF) Alpha

Commonwealth Digital Transformation Agency (DTA) Initial Privacy Impact Assessment (PIA) for the Trusted Digital Identity Framework (TDIF) Alpha Commonwealth Digital Transformation Agency (DTA) Initial Privacy Impact Assessment (PIA) for the Trusted Digital Identity Framework (TDIF) Alpha FINAL 5 December 2016 (GC460) Contact: Galexia Ph: +61 2

More information

Data protection (GDPR) policy

Data protection (GDPR) policy Data protection (GDPR) policy January 2018 Version: 1.0 NHS fraud. Spot it. Report it. Together we stop it. Version control Version Name Date Comment 1.0 Trevor Duplessis 22/01/18 Review due Dec 2018 OFFICIAL

More information

Memorandum of understanding between the Competition and Markets Authority and NHS Improvement

Memorandum of understanding between the Competition and Markets Authority and NHS Improvement 1 April 2016 Memorandum of understanding between the Competition and Markets Authority and NHS Improvement Contents Page Foreword... 2 Summary points of the MoU... 3 Memorandum of understanding between

More information

LAST UPDATED June 11, 2018 DATA PROTECTION POLICY. International Foundation for Electoral Systems

LAST UPDATED June 11, 2018 DATA PROTECTION POLICY. International Foundation for Electoral Systems LAST UPDATED June 11, 2018 DATA PROTECTION POLICY International Foundation for Electoral Systems 1. Purpose 1.1. International Foundation for Electoral Systems is committed to complying with privacy and

More information

General Data Protection Regulation (GDPR) Frequently Asked Questions

General Data Protection Regulation (GDPR) Frequently Asked Questions General Data Protection Regulation (GDPR) Frequently Asked Questions 26 March 2018 0 Contents Introduction... 3 What is GDPR?... 3 Who does the GDPR apply to?... 3 Are tax advisers data controllers or

More information

GDPR is coming in 108 days: Are you ready?

GDPR is coming in 108 days: Are you ready? Charles-Albert Helleputte Partner, Brussels GDPR is coming in 108 days: Are you ready? Diletta De Cicco Legal Consultant, Brussels 6 February 2018 +32 2 551 5982 chelleputte@mayerbrown.com +32 2 551 5974

More information

Privacy Management Plan

Privacy Management Plan Privacy Management Plan Section 1 - Purpose and Scope Purpose (1) The purpose of this Privacy Management Plan (Plan) is two-fold: a. it demonstrates to members of the public how the University upholds

More information

GDPR General Data Protection Regulation

GDPR General Data Protection Regulation GDPR General Data Protection Regulation Compliance Information Guide - May 2018 About this document Ticket Arena & Event Genius Disclaimer DISCLAIMER: This is a brief presentation for information purposes

More information

GDPR Podbriefing Audio Transcript

GDPR Podbriefing Audio Transcript GDPR Podbriefing Audio Transcript Title Hello my name is Geraldine Swanton, and I m a legal director with Shakespeare Martineau in their education team, and I m here today to talk to you about data protection.

More information

Re: Implementation of the General Data Protection Regulation (GDPR)

Re: Implementation of the General Data Protection Regulation (GDPR) Re: Implementation of the General Data Protection Regulation (GDPR) Dear Provider The purpose of this letter is to alert you to important changes arising from the General Data Protection Regulation which

More information

Data Protection Policy. UK Policy May 2018

Data Protection Policy. UK Policy May 2018 UK Policy May 2018 5 & 7 Diamond Court, Opal Drive, Eastlake Park, Fox Milne, Milton Keynes MK15 0DU, T: 01908 396250, F: 01908 396251 www.cognitaschools.co.uk Registered in England Cognita Limited No

More information

Bulkington, Nuneaton & Bedworth (BNB) BNB U3A Data Protection Policy

Bulkington, Nuneaton & Bedworth (BNB) BNB U3A Data Protection Policy Bulkington, Nuneaton & Bedworth (BNB) BNB U3A Data Protection Policy This policy applies to the work of BNB U3A. The policy sets out the requirements that BNB U3A has to gather information for membership

More information

Data Protection Policy

Data Protection Policy Reference: Date Approved: April 2015 Approving Body: Board of Trustees Implementation Date: August 2015 Supersedes: 2.0 Stakeholder groups Governance Committee, Board of Trustees consulted: Target Audience:

More information

Functional area. F Hallinan, C Abad, W Andrews Approver (s) Version 001 Effective date 25 May Privacy Notice for Emergency Contacts

Functional area. F Hallinan, C Abad, W Andrews Approver (s) Version 001 Effective date 25 May Privacy Notice for Emergency Contacts The Charter Schools Educational Trust Privacy Notice for Emergency contacts GDPR compliant (Article 14 contact details given by someone other than the data subject) Contents: The personal data we hold

More information

Foundation trust membership and GDPR

Foundation trust membership and GDPR 05 April 2018 Foundation trust membership and GDPR In the last few weeks, we have received a number of enquiries from foundation trusts concerned about the implications of the new General Data Protection

More information

N.A.P.P.I. (UK) Limited - Course Participant Data Protection Statement

N.A.P.P.I. (UK) Limited - Course Participant Data Protection Statement N.A.P.P.I. (UK) Limited - Course Participant Data Protection Statement In the course of our business we collect, store and process personal information about those people who register for and/or attend

More information

Data Protection Policy

Data Protection Policy Data Protection Policy This policy will be reviewed by the Trust Board three yearly or amended if there are any changes in legislation before that time. Date of last review: Autumn 2018 Date of next review:

More information

UCD Human Resources. UCD HR Privacy Statement - Employee

UCD Human Resources. UCD HR Privacy Statement - Employee UCD Human Resources UCD HR Privacy Statement - Employee Contents 1 Introduction 3 2 What information do we process? 3 3 How do we use your information? 4 4 Special categories of data 4 5 How is your information

More information

EU General Data Protection Regulation (GDPR)

EU General Data Protection Regulation (GDPR) A Brief Overview of the EU General Data Protection Regulation (GDPR) November 2017 What is the GDPR? After several years in the making, on 8 April 2016 the European Council finally adopted Regulation

More information

Parish Resources Section One

Parish Resources Section One Parish Resources Section One General Data Protection Regulation Overview Introduction The General Data Protection Regulation (GDPR) will take effect across Europe on 25 th May 2018. It replaces the existing

More information

VMS Software Ltd- Data Protection Privacy Policy

VMS Software Ltd- Data Protection Privacy Policy VMS Software Ltd- Data Protection Privacy Policy Introduction The purpose of this document is to provide a concise policy statement regarding the Data Protection obligations of VMS Software Ltd. This includes

More information

The General Data Protection Regulation (GDPR) and Data Protection Act (DPA) 2017

The General Data Protection Regulation (GDPR) and Data Protection Act (DPA) 2017 The General Data Protection Regulation (GDPR) and Data Protection Act (DPA) 2017 Part 1: Guidance for Community Pharmacies Version 1: April 2018 With thanks to the Community Pharmacy GDPR Working Party

More information

SCHOOLS DATA PROTECTION POLICY. Guidance Notes for Schools

SCHOOLS DATA PROTECTION POLICY. Guidance Notes for Schools SCHOOLS DATA PROTECTION POLICY Guidance Notes for Schools Please read this policy carefully and ensure that all spaces highlighted in the document are completed prior to publication. Please ensure that

More information

Pensions Authority Data Protection Considerations for Trustees of Occupational Pension Schemes

Pensions Authority Data Protection Considerations for Trustees of Occupational Pension Schemes Pensions Authority Data Protection Considerations for Trustees of Occupational Pension Schemes 1 INTRODUCTION The General Data Protection Regulation (GDPR) comes into force in all EU Member States on 25.

More information

COMMANDER GROUP PRIVACY POLICY

COMMANDER GROUP PRIVACY POLICY COMMANDER GROUP PRIVACY POLICY The Commander brand (Commander, we, us, our) comprises of M2 Commander Pty Ltd and M2 Energy Pty Ltd trading as Commander Power & Gas and both are wholly owned subsidiaries

More information

NOT PROTECTIVELY MARKED

NOT PROTECTIVELY MARKED Meeting Audit Committee Public Session Date and Time Location Pacific Quay, Glasgow Title of Paper General Data Protection Regulation (GDPR) SPA Preparedness Item Number 9.4 Presented By Catherine Topley

More information

Sir William Perkins s School Data Protection Policy

Sir William Perkins s School Data Protection Policy Sir William Perkins s School Data Protection Policy Introduction Sir William Perkins s School is a Charitable Company Limited by guarantee providing educational services for students of 11 to 18 years

More information

General Data Protection Regulation. The changes in data protection law and what this means for your church.

General Data Protection Regulation. The changes in data protection law and what this means for your church. General Data Protection Regulation The changes in data protection law and what this means for your church. 1 Contents Page 5 Page 6 Page 7 Page 8 Page 9 Page 10 Page 11 Page 12 Page 18 Page 20 Page 23

More information

Human Resources. Data Protection Policy IMS HRD 012. Version: 1.00

Human Resources. Data Protection Policy IMS HRD 012. Version: 1.00 Human Resources Data Protection Policy IMS HRD 012 Version: 1.00 Disclaimer While we do our best to ensure that the information contained in this document is accurate and up to date when it was printed

More information

General Personal Data Protection Policy

General Personal Data Protection Policy General Personal Data Protection Policy Contents 1. Scope, Purpose and Users...4 2. Reference Documents...4 3. Definitions...5 4. Basic Principles Regarding Personal Data Processing...6 4.1 Lawfulness,

More information

Middleton International School Personal Data Protection Statement

Middleton International School Personal Data Protection Statement Personal Data Protection Statement (MIS) respects the privacy of individuals and recognizes the importance of the personal data you have entrusted to us and believe that it is our responsibility to properly

More information

DATA PROTECTION POLICY VERSION 1.0

DATA PROTECTION POLICY VERSION 1.0 VERSION 1.0 1 Department of Education and Skills Last updated 21 May 2018 Table of Contents 1. Introduction... 4 2. Scope & purpose... 4 3. Responsibility for this policy... 5 4. Data protection principles...

More information

DELL BANK INTERNATIONAL D.A.C DATA PROTECTION STATEMENT - USE OF PERSONAL DATA 1

DELL BANK INTERNATIONAL D.A.C DATA PROTECTION STATEMENT - USE OF PERSONAL DATA 1 DELL BANK INTERNATIONAL D.A.C DATA PROTECTION STATEMENT - USE OF PERSONAL DATA 1 1. Introduction & Scope This Data Protection Statement ( Statement ) sets out how we, Dell Bank International d.a.c., trading

More information

Derbyshire Constabulary GIFTS, GRATUITIES AND HOSPITALITY GUIDANCE POLICY REFERENCE 12/311. This guidance is suitable for Public Disclosure

Derbyshire Constabulary GIFTS, GRATUITIES AND HOSPITALITY GUIDANCE POLICY REFERENCE 12/311. This guidance is suitable for Public Disclosure Derbyshire Constabulary GIFTS, GRATUITIES AND HOSPITALITY GUIDANCE POLICY REFERENCE 12/311 This guidance is suitable for Public Disclosure Owner of Doc: Head of Department, Professional Standards Date

More information

GDPR Checklist. O - Organisation. P - Processing. T - Technology. I - Information. N - Next OVERVIEW. Your Personal Data

GDPR Checklist. O - Organisation. P - Processing. T - Technology. I - Information. N - Next OVERVIEW. Your Personal Data OPTIN checklist OVERVIEW 1 GDPR Checklist This checklist sets out activities you will need to consider and act on by the compliance deadline of 25th May 2018. Use this to help you identify what support

More information

GDPR for Employers DUBLIN / BELFAST / LONDON / NEW YORK / SAN FRANCISCO / PALO ALTO

GDPR for Employers DUBLIN / BELFAST / LONDON / NEW YORK / SAN FRANCISCO / PALO ALTO GDPR for Employers DUBLIN / BELFAST / LONDON / NEW YORK / SAN FRANCISCO / PALO ALTO 1 Consent Things you need to know about consent and the processing of employees data The EU General Data Protection Regulation

More information

Staff Briefing Session

Staff Briefing Session Data Protection Act 1998 Privacy Impact Assessment (PIA) Compliance for Clinical Commissioning Groups Staff Briefing Session Overview PIA Requirement Annex one Privacy impact assessment screening questions

More information

PRIVACY NOTICE Tendering Contractor / Contractor Staff May 2018

PRIVACY NOTICE Tendering Contractor / Contractor Staff May 2018 Who Are We? PRIVACY NOTICE Tendering Contractor / Contractor Staff May 2018 APUC (Advanced Procurement for Universities and Colleges) Limited is the procurement centre of expertise for Scotland s Universities

More information

ARTICLE 29 Data Protection Working Party

ARTICLE 29 Data Protection Working Party ARTICLE 29 Data Protection Working Party 05/EN WP108 Working Document Establishing a Model Checklist Application for Approval of Binding Corporate Rules Adopted on April 14 th, 2005 This Working Party

More information

The General Data Protection Regulation and associated legislation. Part 1: Guidance for Community Pharmacy. Version 1: 25th March 2018

The General Data Protection Regulation and associated legislation. Part 1: Guidance for Community Pharmacy. Version 1: 25th March 2018 The General Data Protection Regulation and associated legislation Part 1: Version 1: 25th March 2018 Introduction The General Data Protection Regulation and, when enacted, the Data Protection Act 2018

More information

The Heritage Alliance. Data Privacy Policy

The Heritage Alliance. Data Privacy Policy The Heritage Alliance Data Privacy Policy 1. INTRODUCTION 1.1 As a national charity supporting heritage organisations in England, The Heritage Alliance ( HA ) has a responsibility to ensure that it uses

More information

As members will be aware new General Data Protection Regulations (GDPR) come into effect on May 25 th this year.

As members will be aware new General Data Protection Regulations (GDPR) come into effect on May 25 th this year. GDPR As members will be aware new General Data Protection Regulations (GDPR) come into effect on May 25 th this year. These new regulations apply to all businesses and organisations. Controller vs Processor

More information

Data Protection Act Policy Statement Status/Version: 0.1 Review Information Classification: Unclassified Effective:

Data Protection Act Policy Statement Status/Version: 0.1 Review Information Classification: Unclassified Effective: Data Protection Act Policy Statement Status/Version: 0.1 Review Information Classification: Unclassified Effective: 1 Policy Statement Objective 1.1 It is the policy of Penderels Trust to demonstrate compliance

More information

Conditions of the Customer Contract

Conditions of the Customer Contract Conditions of the Customer Contract Applicable from 25 May 2018 1. GENERAL PROVISIONS 1.1 These Conditions of the Customer Contract govern the relations between Us and You in Your capacity as Our Customer,

More information

General Optical Council. Data Protection Policy

General Optical Council. Data Protection Policy General Optical Council Data Protection Policy Authors: Lisa Sparkes Version: 1.2 Status: Live Date: September 2013 Review Date: September 2014 Location: Internet / Intranet Document History Version Date

More information

KEMBLE PRIMARY & SIDDINGTON CE PRIMARY SCHOOLS DATA PROTECTION & THE GENERAL DATA PROTECTION REGULATION (GDPR) POLICY

KEMBLE PRIMARY & SIDDINGTON CE PRIMARY SCHOOLS DATA PROTECTION & THE GENERAL DATA PROTECTION REGULATION (GDPR) POLICY KEMBLE PRIMARY & SIDDINGTON CE PRIMARY SCHOOLS DATA PROTECTION & THE GENERAL DATA PROTECTION REGULATION (GDPR) POLICY Member of staff responsible Head teacher Governor responsible Chair of LGB & DPO Date

More information

GDPR digest ARE YOU GDPR READY? {More than a MORTGAGE CLUB}

GDPR digest ARE YOU GDPR READY? {More than a MORTGAGE CLUB} GDPR digest ARE YOU GDPR READY? {More than a MORTGAGE CLUB} contents. at a glance ICO Helpline Principles Privacy by design Lawful basis for processing Privacy Electronic Communications Regulations - PECR

More information

DATA PROTECTION POLICY 2016

DATA PROTECTION POLICY 2016 DATA PROTECTION POLICY 2016 ADOPTED FROM BRADFORD METROPOLITAIN COUNCIL MODEL POLICY AUTUMN 2016 To be agreed by Governors on; 17/10/16 Signed by Chair of Governors: Statutory policy: Yes Frequency of

More information

Elevate your performance

Elevate your performance Elevate your performance Company Directors Course Scholarship BALLARAT & CENTRAL HIGHLANDS REGIONAL SCHOLARSHIP: 2018 application form 2 COMPANY DIRECTORS COURSE SCHOLARSHIP - LODDON MALLEE REGIONAL APPLICATION

More information

Data Protection Policy for the Grimsby Institute of Further & Higher Education

Data Protection Policy for the Grimsby Institute of Further & Higher Education Data Protection Policy for the Grimsby Institute of Further & Higher Education Data Protection Policy Change Control Version: V1.1 New or Replacement: Approved by: Replacement Executive Management Team

More information

Representative Church Body of the Church of Ireland General Data Protection Regulation Overview

Representative Church Body of the Church of Ireland General Data Protection Regulation Overview Representative Church Body of the Church of Ireland General Data Protection Regulation Overview Rebekah Fozzard Representative Church Body Spring 2018 Introduction Data Protection Coordinator for the Representative

More information

GENERAL DATA PROTECTION REGULATION Guidance Notes

GENERAL DATA PROTECTION REGULATION Guidance Notes GENERAL DATA PROTECTION REGULATION Guidance Notes What is the GDPR? Currently, the law on data protection requiring the handling of data which identifies people to be done in a fair way, is contained in

More information

DATA PROTECTION POLICY

DATA PROTECTION POLICY Registered Address: Mountdale Gardens, Leigh-on-Sea, Essex SS9 4AW Executive Headteacher: Mrs. J. Mullan Telephone: (01702) 524193 Fax: (01702) 526761 DATA PROTECTION POLICY SEN TRUST SOUTHEND KINGSDOWN

More information

DATA PROTECTION POLICY

DATA PROTECTION POLICY Registered Address: Mountdale Gardens, Leigh-on-Sea, Essex SS9 4AW Executive Headteacher: Mrs. J. Mullan Telephone: (01702) 524193 Fax: (01702) 526761 DATA PROTECTION POLICY SEN TRUST SOUTHEND KINGSDOWN

More information

Guidance on the General Data Protection Regulation: (1) Getting started

Guidance on the General Data Protection Regulation: (1) Getting started Guidance on the General Data Protection Regulation: (1) Getting started Guidance Note IR03/16 20 th February 2017 Gibraltar Regulatory Authority Information Rights Division 2 nd Floor, Eurotowers 4, 1

More information

More information at cventconnect.com/europe/mobileapp

More information at cventconnect.com/europe/mobileapp Download and Login to the Cvent CONNECT Europe Mobile Event App Tap On Schedule Find Your Session Access Polls and Live Q&A More information at cventconnect.com/europe/mobileapp Cvent CONNECT Europe General

More information

PERSONAL INFORMATION

PERSONAL INFORMATION PERSONAL INFORMATION PERSONAL INFORMATION When you use the QUANTIC PRIME website, we may collect personal information about you for business purposes. Such information may include: When filling out a form

More information

Humber Information Sharing Charter

Humber Information Sharing Charter External Ref: HIG 01 Review date November 2016 Version No. V07 Internal Ref: NELC 16.60.01 Humber Information Sharing Charter This Charter may be an uncontrolled copy, please check the source of this document

More information

Information Governance Clauses Clinical and Non Clinical Contracts

Information Governance Clauses Clinical and Non Clinical Contracts Information Governance Clauses Clinical and Non Clinical Contracts Policy Number Target Audience Approving Committee Date Approved Last Review Date Next Review Date Policy Author Version Number IG014 All

More information