Are You Compliant?
The most recent Data Protection Commissioner has highlighted a change in emphasis by the authorities away from registration (which is still important) towards compliance. So, what is "compliance"?
This article can only scratch the surface of this question. Basically, if you store and deal with peoples personal details (which most of us do) on or off-line, then you must:
- Deal fairly with people's information
- Tell them what you collect
- Tell them what you will do with it (and do so!)
- Keep it safe and secure.
Data Protection Checklist
- Are you sure your IT system is reasonably secure? (Have you had it checked--this can be done relatively cheaply by specialist IT support services)
- Are your employment contracts up to date and do they include security of data issues?
- Do you have a proper privacy policy, is it made known to site visitors and is it followed?
- Have you considered physical threats such as break-ins to where your computers are?
- Do you dispose of print outs, corrected draft letters etc carefully?
- Do you (fully) wipe hard drives before disposing of old equipment?
- If you send any data to others is it said in your privacy policy that you will and do you have agreements about the security of data with the recipient (and an indemnity if they don't follow that?)
Find Out More
If you need help understanding your Data Protection responsibilities or would like to make sure you are fully compliant with the Act contact Woolley & Co by e-mail andrew.woolley@business-lawfirm.co.uk or telephone 01789 267377.


