Wilor Academy Data Protection Policy (WAP010)

Introduction
Wilor Academy is committed to ensuring the security and protection of the personal information that we process, and to provide a compliant and consistent approach to data protection. We acknowledge our obligations under the Data Protection Act (1998) along with its amendments in (2018) and are dedicated to protecting the privacy and confidentiality of personal data.
1. Scope
This policy applies to all employees, contractors, volunteers, and third-party service providers who process personal data on behalf of Wilor Academy.
2. Principles of Data Protection
Wilor Academy will adhere to the following principles in its data protection activities:
a. Lawfulness, Fairness, and Transparency
We will process personal data lawfully, fairly, and in a transparent manner.
b. Purpose Limitation
We will collect personal data for specified, explicit, and legitimate purposes and will not process it further in a manner incompatible with those purposes.
c. Data Minimisation
We will only collect and process personal data that is necessary for the purposes for which it is being processed.
d. Accuracy
We will ensure that personal data is accurate and up-to-date.
e. Storage Limitation
We will not keep personal data for longer than is necessary for the purposes for which it is being processed.
f. Integrity and Confidentiality
We will process personal data in a manner that ensures appropriate security, including protection against unauthorised or unlawful processing and against accidental loss, destruction, or damage.
3. Data Subject Rights
Wilor Academy recognises the rights of data subjects under the Data Protection Act. Individuals have the right to access their personal data, request correction of inaccuracies, and object to the processing of their data.
Wilor Academy recognises the rights of employees under the Data Protection Act. In line with this, employees have the following rights regarding their personal data:
1. The right to access personal data: Employees are entitled to request access to the personal data held about them by the Academy. This allows them to confirm the accuracy of the data and understand how it is being used.
2. The right to request correction of inaccuracies: Employees have the right to request that any inaccurate or incomplete personal data be corrected.
3. The right to object to the processing of their data: Employees may object to the processing of their personal data, particularly if the processing is based on illegitimate interests or for direct marketing purposes.
Wilor Academy is committed to ensuring that all personal data is handled responsibly and in accordance with relevant data protection laws. Employees will be informed about how their data is collected, used, and stored through our data privacy notices.

These notices will provide transparency regarding the purposes for which personal data is processed and any third parties with whom it may be shared. Employees are encouraged to read the data privacy notices and contact the Data Protection Officer should they have any questions or concerns regarding how their data is handled.
4. Equal Opportunities, Diversity and Inclusion
Wilor Academy is committed to fostering diversity and inclusivity, ensuring equal employment opportunities, and complying with the Equality Act 2010. In line with this, all personal data relating to employees, contractors, volunteers, and third-party service providers will be processed in a manner that upholds these values, ensuring that no discrimination occurs based on background,ethnicity, or any other factors. The Academy will ensure that any data used for recruitment,performance management, or other HR activities is handled securely, fairly, and with respect for diversity.
5. Employment Contracts and Terms of Employment
Personal data shared within employment contracts, such as contact details, job role, salary, and other relevant information, will be processed and stored securely. The Academy will ensure that all personal data contained in employment contracts is handled in accordance with data protection laws, maintaining confidentiality and preventing unauthorised access.
6. Grievance and Disciplinary Procedures
In line with the HR policy, any personal data collected during grievance or disciplinary procedures will be processed securely. Only the relevant individuals will have access to this data, and it will be retained only for the minimum necessary period. The data will be handled in accordance with the principles of data minimisation, ensuring that only essential information is gathered and stored.
7. Data Security
Wilor Academy will implement appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including protection against unauthorised or unlawful processing and against accidental loss, destruction, or damage.
8. Training and Awareness
Wilor Academy will provide regular training to all employees, contractors, and volunteers involved in processing personal data to ensure awareness and understanding of data protection responsibilities.
9. Data Breach Notification
In the event of a breach of data, Wilor Academy will promptly assess and notify the relevant supervisory authority and affected data subjects, as required by the law.
10. Data Protection Impact Assessments (DPIAs)
Wilor Academy will conduct DPIAs for processing activities that may result in a high risk to the rights and freedoms of data subjects.
11. Data Protection Officer (DPO)
Wilor Academy has appointed a Data Protection Officer (DPO) who is responsible for monitoring compliance with this policy and applicable data protection laws.
12. Review and Revision
This policy will be reviewed annually and updated as necessary to ensure ongoing compliance with data protection laws and any changes to Wilor Academy ‘s processing activities.

Published Date : November 2023
Reviewed By : Salma Ali
Date of Review : June 2024
Date of Next Review : July 2025
Policy Number : WAP010

Salma Ali
Principal

Disable Right Click, Copy, and Screenshots
Scroll to Top