Roles and Responsibilities
Senior Management
The senior management of the Company is responsible for ensuring that this policy is implemented effectively throughout the organization. They will designate a Data Protection Officer (DPO) who will oversee the compliance with the policy.
Data Protection Officer/Committee
The DPO/Committee will be responsible for monitoring compliance with this policy, providing training to staff on the handling of personal data, conducting audits, and responding to data subject requests. The DPO/Committee will also act as the main point of contact for data protection issues and liaise with regulatory authorities as necessary.
Employees and Staff
All employees and staff have a duty to comply with this policy and any other policies and procedures that relate to personal data. They should ensure that personal data is processed lawfully, fairly, and in a transparent manner.
Processing and Handling of Personal Data
Customer Data
Customer data will be collected and processed for the purposes of providing services to customers. This data will be kept confidential and only disclosed to third parties where it is necessary for the provision of the services.
Employee Data
Employee data will be collected and processed for the purposes of employment, such as payroll and human resources. This data will be kept confidential and only disclosed to third parties where it is necessary for the provision of employment benefits.
Third Parties’ Data
Third parties’ data will only be collected and processed where it is necessary for the provision of services. The Company will take reasonable steps to ensure that third parties’ data is accurate and kept up to date.