Privacy Policy GENERAL

Similar documents
Subject: Kier Group plc Data Protection Policy

Cognizant Careers Portal Privacy Policy ( Policy )

Within the meanings of applicable data protection law (in particular EU Regulation 2016/679, the GDPR ):

Cognizant Careers Portal Terms of Use and Privacy Policy ( Policy )

Down Under Centre Employment Hub - Privacy Policy Introduction

Pathways CIC Privacy Policy. Date Issued: May Date to be Reviewed: May Issued by Yvonne Clarke

Jefferies EMEA Privacy Notice

UWC International Data Protection Policy

This policy also applies to personal information about you that the Federation collects from any other third party.

Last updated 31 March 2016 This document is publically available at

UWTSD Group Data Protection Policy

SANMINA CORPORATION PRIVACY POLICY. Effective date: May 25, 2018

DATA PROTECTION POLICY THE HOLST GROUP

Vernon Building Society Recruitment Privacy Notice. Effective from 25 th May 2018

Project Better Energy Limited s registered office is Witan Gate House, Witan Gate West, Milton Keynes, Buckinghamshire, MK9 1SH

Privacy Policy Premium Carpet Care Ltd

About the information we collect We collect and process personal data including but not limited to:-

PRIVACY POLICY 1. ABOUT THIS POLICY

It applies to personal information for individuals that are external to us such as donors, clients and suppliers (you, your).

ma recycle GDPR Privacy Policy .com Rely and Comply... Policy Date: 24 May 2018

Graff Search Limited ( Graff Search ) is a recruitment agency and recruitment business.

Privacy Policy May 2018

Privacy Shield Policy

Xpress Super may collect and hold the following personal information about you: contact details including addresses and phone numbers;

INNOVENT LEASING LIMITED. Privacy Notice

Recruitment Privacy Notice

PRIVACY STATEMENT. The Island with Bear Grylls (the Programme ) Introduction and main purposes

NEWS CORP AUSTRALIA PRIVACY POLICY

The General Data Protection Regulation

Care Recruitment Matters Limited Privacy Notice

HOW WE USE YOUR INFORMATION

Catalent Inc. Privacy Policy v.1 Effective Date: May 25, 2018 Page 1

Data Protection Policy

CURTIS BANKS LIMITED. Privacy Information Notice. curtisbanks.co.uk

Our Data Protection Officer is Andrew Garrett, Operations Manager

2. Who we collect information (data) from & why we collect it

POMONA EUROPE ADVISORS LIMITED

Privacy and Cookies Policy EH Hotel 2018 Ltd

ACCOUNTING TECHNICIANS IRELAND DATA PROTECTION POLICY GENERAL DATA PROTECTION REGULATION

DATA PROTECTION PRIVACY NOTICE PROTECTING YOUR PERSONAL INFORMATION: YOUR RIGHTS, OUR RESPONSIBILITIES

Beam Suntory Privacy Policy WEBSITE PRIVACY NOTICE

Data Protection. Privacy Policy. Equestrian Training South West

Data Protection Policy

Privacy Notice. General Information Protection Regulation ( GDPR )

What personal data or information do we collect? The personal information we collect may include:

The British Museum. Data Protection Code of Practise. 1 Introduction

Breach Notification Form

This Statement does not apply to your use of a third party site linked to on this website

Website and Marketing Privacy Policy

The West End Community Trust Privacy Policy

Privacy Policy. About Us

Fritztile is a brand of The Stonhard Group THE STONHARD GROUP Privacy Notice The Stonhard Group" Notice Whose Personal Data do we collect?

Privacy Policy KPMG Australia

For ease of reference, we have organised this Statement into the following click-through sections:

Privacy Policy. Revisions to this Policy. What Information we collect. How do we collect Information?

TINOPOLIS PRIVACY NOTICE

Islam21c.com Data Protection and Privacy Policy

You can find a brief summary of this Privacy Policy in the chart below.

Our privacy statement Who are we? Your acceptance of this statement Changes to this privacy statement What is personal data?

1 Privacy Statement INDEX

World Wide Jobs Ltd t/a Findmyexpert.com Privacy Policy 12 th April 2018

Privacy Policy. How we handle your information you provide to us. Updated: 14 March 2016

This Privacy Policy governs our processing of all personal data provided to us at Environmental Essentials in relation to our E-learning services.

GENERAL PRIVACY POLICY

Privacy Notice For Ghana International Bank Plc customers

PRIVACY POLICY. 3.1 This policy does not apply to the collection, holding, use or disclosure of personal information that is an employee record.

You will see lots of references in the Checklist to the GDPR Pack if you would like to purchase this, go to

Shaw Privacy Policy. 1- Our commitment to you

Kährs Group s Privacy Policy

Policy Objectives (the Association) Privacy Act APPs Policy Application ACTU The Police Association Website

Privacy Policy Wealth Elements Pty Ltd

PRIVACY NOTICE VOLUNTEER INFORMATION. Liverpool Women s NHS Foundation Trust

Maritime Union of Australia. Privacy Policy 2014

Whiteinch and Scotstoun Housing Association and WS Property Management Ltd. Privacy Policy

Data Protection Policy

Privacy Policy: Data & Information Security Policy Last revised: 9 May 2018

CRYPTALGO HOLDINGS AG - Privacy Policy page 1 of 5

1. Muscat & Co Mortgage Solutions Ltd - Privacy Notice

Adkin s Privacy Information Notice for Clients, Contractors, Suppliers and Business Contacts

Policy on Privacy and Management of Personal Information

PRIVACY NOTICE ADMISSIONS TO HEALTH-RELATED GRADUATE PROGRAMS

Polemic is a business involved in the collection of personal data in the course of its business activities and on behalf of its clients.

GDPR. What is GDPR? GDPR is extraterritorial, meaning it applies to any company, processing EU resident data, irrespective of their location.

Protecting your Privacy Winchester Cathedral Privacy Notice

Depending on the Services or information you request from us, we may ask you to provide the following personal information:

Motorola Mobility Binding Corporate Rules (BCRs)

Privacy and Data Protection Policy

UNTITLED HIP HOP PROJECT Privacy Policy. 1. Introduction

DLB Privacy Policy. Why we require your information

We may change the privacy notice from time to time by amending this page.

Privacy Policy Effective May 25 th 2018

Privacy Statement. Your privacy and trust are important to us and this Privacy Statement ( Statement ) provides important information

Privacy Policy First National Group of Independent Real Estate Agents Limited ACN

DATA PROTECTION POLICY

ADMA Briefing Summary March

Made In Hackney Data Protection Policy Last Updated:

Privacy Policy Who are we? What personal date or information do we collect? How do we collect data or information from you?

Adelaide Fringe is committed to protecting the privacy of its artists, employees, prospective employees, venues and the general public.

If you have any questions about this notice, please contact the Head Master.

Privacy policy. Last updated September Caravan Trade & Industries Association of Queensland ABN (CTIAQ)

Transcription:

Privacy Policy GENERAL This document sets out what information Springhill Care Group Ltd collects from visitors, how it uses the information, how it protects the information and your rights. Springhill Care Group Ltd is committed to ensuring your privacy is protected in accordance with Data Protection Standards. Springhill Care Group Ltd is using the following definition for Personal Data: Personal data Sensitive personal data Information relating to identifiable individuals, such as job applicants, current and former employees, agency, contract and other staff, clients, suppliers and marketing contacts. Personal data we gather may include: individuals' contact details, educational background, financial and pay details, details of certificates and diplomas, education and skills, job title, and CV. Personal data about an individual's racial or ethnic origin, marital status, nationality, political opinions, religious or similar beliefs, trade union membership (or non-membership), physical or mental health or condition, criminal offences, or related proceedings any use of sensitive personal data will only ever be carried out with the express permission of the individual. Springhill Care Group Ltd may change this policy from time to time by updating this page. This policy is effective from 1 st May 2018 but we ask you to check this page from time to time. Any updates or changes to the use of your personal data will be advised to you, prior to that change of use. Who We Are? Springhill Care Group Ltd, 11 Cannon Street, Accrington, Lancashire, BB5 1NJ, United Kingdom Contact Us You can contact us by On-Line : Email : https://www.springhillcare.com info@springhillcare.com Phone : 01254 304500 Post: Springhill Care Group Ltd, 11 Cannon Street, Accrington, Lancashire, BB5 1NJ, United Kingdom What services do we provide? Springhill Care Group Ltd provide a range of person-centred care and support services including nursing, dementia, social, residential and respite care.

What we collect The specific information that we collect will vary depending on what services we provide you by way of contract, or what you either provide us explicitly e.g. signing up to a newsletter or perhaps applying for a job at Springhill Care Group Ltd. Typical information will include some or all of the following depending on the services we are providing you: Identification and contact data email address, name, phone number, postal address, next of kin. Enhanced identification data ID documents (driving licence, passport, immigration status). Financial Data bank details, tax and national insurance information, credit card information and who is paying for care. Employment Data CV, training, reference and qualification information. Web Related Data your IP address, geographical data, cookies. Health Data Where there is a need to protect you, our clients or other members of staff we may need to collect specific health data. Criminal Records Where there is a need for us to undertake enhanced verification or legal checks in order for you to work in our sector or for us to undertake specific services on your behalf. Customers and Residents why we distinguish them Springhill provide our services to residents within our care. Residents may sometimes be responsible for all the associated care costs. However, sometimes care costs are covered in part or in full by other individuals or organisations. In circumstances where care costs are being covered in part or full by an individual (or individuals) other than the person receiving the care (our resident), then it will be necessary to process the personal information of all individuals involved in the care provision, both those receiving and those responsible for the financial aspects. We will of course limit the personal data to the minimum information necessary for us to undertake those activities requiring that information. Collecting Personal Data When we collect personal data, you will be provided with a privacy notice that will detail: 1. Who we are 2. What personal information we are collecting 3. Why we need it

4. Legal Basis under which we are processing (typically consent, contractual obligations and/or legitimate interest ) (https://ico.org.uk/for-organisations/guide-to-the-general-dataprotection-regulation-gdpr/lawful-bases-for-processing/) 5. What we are going to use it for and any decisions (automated or human) that it will be used for. 6. Who that information will be shared with. 7. The safeguards we have put in place to protect your information. 8. Our standard retention period or legal need to retain that information. 9. A copy of your rights is available on the privacy page of our website. Some of the information we collect is provided here: Personal identification data name, address, passport, immigration status, banking information. Sensitive personal data health/medical/wellbeing, religious, racial. Legal Status your legal status in respect of the services we are undertaking for you, and/or the status of those that can act on your behalf. How we collect Personal Data Depending on the nature of our engagement we may collect personal data in a variety of ways. We may collect this information directly from you. We may collect this information from your relative. We may collect this information from a Health Care Professional in the event that you come to us via a health provider (such as the NHS or Social Services). What we use that Personal Data for The specific use of Personal Data will be detailed in the relevant privacy policy for the specific service(s) we are providing you. As a general guide we use personal data to: 1, Deliver the services that we have contracted with you to provide. In these circumstances the legal basis of processing is likely to be contractual obligation which will be detailed in the relevant privacy policy for that service. Depending on how you have asked us to communicate with you e.g. phone, text message, email, or how we are required to communicate with you e.g. secure Royal Mail deliveries we will use one or many of the methods you have provided us with. In some cases, we may be required by law or for security reasons to communicate with you in a specific manner. This will be made clear in the relevant privacy policy.

2. Process information relating to job applications. In these circumstances we will use your information for the purpose of screening and selection against criteria for roles within our organisation. Depending on the role we may undertake further screening of your information with third-parties for example to undertake DBS, Criminal Records as well as medical/health checks in order to protect you and our clients. You will be informed of this as part of our recruitment process. Nothing will be shared with a third party without your consent. As an employer we may also be required to provide statistical information as required by employment or industry legislation such as ethnicity, gender etc. 3. Newsletters database. If you have explicitly signed up to receive one of our newsletters then your information will be used, in that case, for the specific purpose of sending you the relevant newsletter. Newsletters have a generic Privacy Policy, a copy can be found on the privacy policies page of our website, you can opt-out of receiving newsletters at any time by following the opt-out process. If you are an existing customer or have inquired about a product we will send you news about relevant products and services based on your preferences at the time unless you have opted-out of receiving contact from us. You will be asked about this at the time of engagement. 4. Web site Cookies. We use web site cookies to enhance your experience when visiting our site. For a period of time, defined by the Internet Service Providers retention policy, your IP address can be used to identify you (or your location) and as such constitutes personal data. We do not explicitly use this information ourselves, but we do use it to monitor where visitors are coming from and what is being looked at on our site. Our Cookie Policy details this more fully. This list is not exhaustive but designed to provide you indicative uses of your personal data. Please ensure you read the appropriate Privacy Policy for the product or service we are providing you for specific information. Links to other sites We may provide, from time to time, links to other sites via our newsletter, blog article or other web links. Because we have no control over these sites, we cannot take responsibility for the practise they may undertake in respect of privacy and/or protecting your Personal Data. We would therefore advise you to satisfy yourselves that these sites are operating privacy policies that inform you how they handle and protect your data as we cannot take any responsibility for this. Social Media Widgets and Links You are probably familiar with the Facebook Like button and the various Share buttons that are available to users of the internet. We sometimes use these to allow us to promote our services to other people as well as get feedback as to what articles, pages or blogs are of interest. These other service providers may collect personal data about you, such as IP address, pages you visit on our site and may set their own cookies to enable them to function properly. In much the

same way as Links to other sites do not allow us to enforce our policies, we would suggest that you undertake the same checks regarding the privacy policy of the company providing those features. Marketing Subscription If you have opted-in to our Marketing, you can find the related privacy policies on the privacy policies page of our website. Third Parties Service Providers, Business Partners and others We work with a number of third-party services providers who undertake services for us, these include: Service Provider or Provider Type GP, Medical Assessment, Occupational Health Health Care providers in the event of an emergency Your previous employer or references Professional Bodies and Certification Boards Health and Life Insurance bodies Service Provided to us or you Potentially to assess your ability to work for us and to ensure we can meet your needs. In the case of you being a resident, this will be necessary to ensure that we can meet your needs initially and on an ongoing basis. This is on the basis of protecting your vital interests as well as those of our staff and clients. To ensure that in the event you become unwell we are able to provide the necessary information to assist with you receiving the necessary medical attention. This is to protect your vital interests. Provision of feedback on your previous roles or you as an individual, this on the basis of our legitimate interests. To ensure that you have the necessary professional certifications required for us to employ you and for any ongoing sector specific requirements of professional competence. This on the basis of our legitimate interests. In the event that you travel on business and/or are entitled to private medical or life insurance we are required to pass on certain information to the companies that provide these services on our behalf. This is on the basis of our contractual obligations with you. In most cases you will be made aware of the parties that we share information with, prior to us sharing this information.

Where we may share your information without your explicit consent We may be required or chose to share your information in certain circumstances without obtaining your explicit consent, some examples of this would be: To comply with any legal process, applicable law or governmental request e.g. warrant, subpoena, statutory reporting, sector specific compliance To enforce/administer our agreements To protect our company or the public from harm or illegal activities For fraud prevention, investigation, risk assessment To protect the rights and property of our company To defend ourselves against third-party claims or allegations In any event, we will consider your rights and privileges before sharing this information. Your Rights A copy of your rights is available on the privacy policies page of our website. How you can help protect your Personal Data In all cases, the information we require to obtain for you is necessary in the provision or assessment of the provision of services to you. We rely on this information being accurate and up to date, which is in part our responsibility as well as yours. However, in many cases you are able to limit the use of your information for services that do not require your data. However, limiting your information may result in you not being able to receive that optional service. Changes to your Personal Data In the event that your Personal Data, that we use to provide you goods or services, changes e.g. your surname, address, email address or Sensitive Personal Data e.g. Religion, Health Data it is critical that you inform us of these changes to ensure we have the correct information on our systems. Where you have access to administer these changes yourself we would expect you, if you are able, to update these details accordingly or else inform us of changes as soon as possible. Cookies Cookies are small files that are downloaded by many web sites to either enable a site to work, to assist you e.g. remembering your username and/or passwords, to track your behaviour in order to show relevant content and to show relevant marketing information which in turn may follow you across other sites. You can opt-out of allowing cookies by instructing your browser to stop accepting cookies or to prompt you before accepting a cookie from a website you visit, by changing the settings within your browser software.

Mailing List Opt-In Marketing Emails & Newsletters You may opt-out of receiving marketing emails and newsletters from us by using the unsubscribe link within each email or contacting us directly. Please read our Marketing Privacy Notice for more info. Opting out of marketing lists, only removes you from such communication. Transactional emails e.g. those relating to services we are providing to you or responding to queries or enquires you make to us, may still result in us emailing you information where that medium is most appropriate. Security Springhill Care Group Ltd operates a Privacy By Design and By Default policy. This means that before we use your data we have already considered the potential impact on you were your data to be lost, stolen, shared or compromised. We undertake routine reviews of our processes and security policies in order to ensure that we can take all reasonable precautions in protecting your data. Where at all possible we encrypt all information that is either stored or transmitted to third-parties. Where data is stored or transmitted to a Third Country (any country outside of the European Economic Area (EEA)) we will ensure appropriate adequacy protection is in place in accordance with Data Protection Legislation. Consequently we may also need to sometimes undertake further security and screening questions when undertaking our routine dealings with you these are there to protect your personal data and security. Whilst we undertake all reasonable precautions, encryption, software updates and patches, we cannot guarantee the safety of data transmitted over the internet. Data Breach In the event of a data breach of your personal data, which means: The unintended loss, destruction amendment or disclosure of personal data We will first do all that is necessary in order to minimise the impact on you, identify any potential malicious third-party, identify any third-parties that may also be impacted and take all reasonable efforts to ensure that you are notified. In the event that we are notified by a third-party of a breach, in their systems, we will undertake the same level of efforts. We will undertake this communication either directly with you as an individual or by sending out a public notification. At the same time we will comply with the current law in respect of informing the appropriate supervisory authority which is currently the Information Commissioners Office (ICO). We are under a legal requirement to report Data Breaches to the ICO.