GDPR Compliance
Datalyse Group is committed to ensuring the security and protection of the personal information we process, providing a consistent and compliant approach to data protection.
About the GDPR
The EU General Data Protection Regulation ("GDPR") came into effect across the European Union on 25 May 2018 and brings with it the most significant changes to data protection law in two decades.
The 21st century brings with it a broader use of technology, new definitions of what constitutes personal data, and a vast increase in cross-border processing. The new Regulation aims to standardise data protection laws across the EU.
Our Commitment
Datalyse Group is dedicated to safeguarding personal information under our responsibility and developing an effective data protection regime that is fit for purpose.
How we prepared for the GDPR
Datalyse Group already has a consistent level of data protection and security across our entire organisation.
Information Audit
We conducted a company-wide information audit to identify and assess what personal information we hold, where it comes from, and how and why it is processed.
Data Protection
Our main data protection policy has been reviewed to meet the standards of the GDPR, with accountability and governance measures in place.
Retention and Erasure
We have updated our retention policy to ensure compliance with the principles of "data minimisation" and "storage limitation".
Data Breaches
Our breach procedures ensure we have safeguards in place to identify, assess, investigate, and report any personal data breaches.
International Transfers
We have robust procedures and safeguards in place to secure, encrypt, and maintain the integrity of data transferred outside the EU.
Subject Access Requests (SAR)
We have reviewed our SAR procedures to accommodate the revised 30-day timeframe and to provide the requested information free of charge.
Your Rights
Data Subject Rights
01
Access to personal data
What personal data we hold about you and the purposes of processing.
02
Categories and recipients
The categories of personal data concerned and to whom it is disclosed.
03
Retention period
How long we intend to store your personal data.
04
Rectification
The right to have incomplete or inaccurate data corrected.
05
Erasure and restriction
Request the erasure of personal data or restrict its processing.
06
Complaint
The right to lodge a complaint or seek a judicial remedy.
Information Security
Datalyse Group takes the privacy and security of individuals and their personal information very seriously.
Data Privacy Team
Datalyse Group Ltd has a data privacy team dedicated to developing and implementing our roadmap to comply with the new data protection regulation. The team is responsible for promoting GDPR awareness across the organisation.
We understand that ongoing employee awareness and understanding is vital for continued GDPR compliance and have implemented a dedicated training programme.
Have questions about GDPR?
If you have any questions about our GDPR preparedness, please do not hesitate to contact us.
Datalyse Group Ltd
Henstaff Court Llantrisant Road,
Groesfaen, Cardiff, UK CF72 8NG