uuid : 8d5c392e-278d-493f-ad4e-9205bdf07524 templates_id: 117332 templates_uuid: "d5c160de-5667-4074-b4b2-ed342d26d949" title: "Data Protection Policy - Data Security Policy - Data Protection Policy Template" display_name: "Data protection and data security policy" meta_keywords: "Data protection statement, Data protection agreement and Data protection policy" description: "

This document is GDPR compliant.

\r\n\r\n\r\n

See to it that you satisfy your legal obligation to notify staff about your use of their personal data as well as their use of client\'s personal data with this data protection policy. Proper data security rules will instil confidence in your clients and employees and help protect you from any mishandling of personal data. This data protection policy template outlines the responsible parties, the sorts of data covered, and the essential protection measures for the security of personal data.

\r\n\r\n

When to use

\r\n

Use this data protection and data security policy

\r\n\r\n

What it covers

This data protection and data security policy covers

\r\n\r\n\r\n

What is a data protection policy?

\r\n\r\n

A data protection policy is a comprehensive document that sets out the policies and procedures a business will comply with when dealing with information and data.

\r\n\r\n

Why do I need a data protection policy?

\r\n\r\n

Having a data protection policy ensures that your business has a systematic approach to comply with any laws and regulations. It will help inform staff about their duties and makes it clear the procedures for collecting, storing and processing data.

\r\n\r\n\r\n

How do I implement the data protection policy?

\r\n\r\n

By creating this practical document and making sure it is readily available for staff and customers to read, it will be incorporated into your business. It should be readily available to staff to refer to when they need data protection advice.

\r\n\r\n

You can also include it in your employee handbook for employees to read and attach it alongside any terms and conditions so customers can refer to it.

\r\n\r\n\r\n

Further advice

\r\n

Ask a lawyer for:

\r\n\r\n\r\n

This data protection and data security policy is governed by the law of England and Wales.

" created_timestamp: "2018-05-25 03:16:50.0" modified_timestamp: "2018-05-25 03:16:50.0" active: true created_by: 104 modified_by: 104 dcm_id: 276 url_slug: "Data-protection-and-data-security-policy" meta_description: "Create a data protection policy to outline the rules in handling employee and client personal data with help from Rocket Lawyer. Comply with legal requirements by laying out the steps used to protect personal data. Try this data protection policy. " time_to_complete: "10 minutes"

Create your free Data protection and data security policy

How it works

  • Create your document
  • Download
    & Print
  • Sign &
    Make it Legal
Data Protection Policy - Data Security Policy - Data Protection Policy Template

Overview of the Data protection and data security policy

This document is GDPR compliant.

See to it that you satisfy your legal obligation to notify staff about your use of their personal data as well as their use of client's personal data with this data protection policy. Proper data security rules will instil confidence in your clients and employees and help protect you from any mishandling of personal data. This data protection policy template outlines the responsible parties, the sorts of data covered, and the essential protection measures for the security of personal data.

When to use

Use this data protection and data security policy

  • to inform staff about your use of their personal data, as required by law
  • to educate staff about the principles they must adhere to in handling personal data
  • to help comply with your duty to protect the security of personal data, by informing staff of necessary measures

What it covers

This data protection and data security policy covers

  • who is responsible for data protection and data security
  • what kinds of data are covered by the policy
  • the types of data collected by the employer about staff
  • the uses the employer makes of data concerning staff
  • transfer of data overseas
  • principles that must be adhered to in handling personal data
  • measures to protect the security of personal data
  • subject access requests

What is a data protection policy?

A data protection policy is a comprehensive document that sets out the policies and procedures a business will comply with when dealing with information and data.

Why do I need a data protection policy?

Having a data protection policy ensures that your business has a systematic approach to comply with any laws and regulations. It will help inform staff about their duties and makes it clear the procedures for collecting, storing and processing data.

How do I implement the data protection policy?

By creating this practical document and making sure it is readily available for staff and customers to read, it will be incorporated into your business. It should be readily available to staff to refer to when they need data protection advice.

You can also include it in your employee handbook for employees to read and attach it alongside any terms and conditions so customers can refer to it.

Further advice

Ask a lawyer for:

  • changing an existing data protection policy that is contractually binding
  • advice on the use of covert monitoring in the workplace
  • issues where employer's use of employee data may infringe their right to privacy or relates to information about what they do outside work

This data protection and data security policy is governed by the law of England and Wales.

Sample Data protection and data security policy

More than just a Data protection and data security policy template, our step-by-step interview and guidance makes it easy to create your document.

Easily create online, download, print and sign your free Data protection and data security policy in minutes.

This document is also sometimes called: Data protection statement, Data protection agreement and Data protection policy.