GDPR
Our Commitment to Data Privacy
What We Are Doing
Completing a GDPR Audit
Earlier this year we completed a companywide internal audit of Capium Limited to identify and map out the personal data we hold and to allow us to identify any areas where we would have to work on to achieve GDPR compliance. The GDPR audit was supported with a roadmap for compliance which we have been working through.
Appointing a DPO
We take this responsibility seriously and as such we appointed a qualified lawyer and experienced Data Protection Officer, Michael Blakeley, who has more than a 14 years of legal and compliance experience to help us look after your data. He can be contacted on Michael.blakeley@capium.com and is available to assist you with any questions you may have.
Updating our Privacy & Cookie Policy
Putting in place new GDPR compliant Cookie and Privacy Policies which explain how we use your data and what rights you have under the new regulation. These can be found here: Privacy Policy https://www.capium.com/privacy-policy/ and Cookie Policy https://www.capium.com/cookie-policy/
Putting in place a Document Retention Policy
Putting in place a document retention policy to ensure that we keep the documents necessary to fulfil our obligations under HRMC and other regulatory bodies, but also ensuring that we are not keeping your data for longer than is necessary.
Ensuring any international transfer are done in the right way
Where we are transferring data outside of the EU, committing to appropriate data transfer mechanisms as required by GDPR. This includes any personal data which is transferred to our group company Capium in India (see further our Privacy Policy https://www.capium.com/privacy-policy/),whose security we have reviewed and where we have put the necessary international transfer agreement and model clauses to comply with GDPR.
Putting measures in place to keep your data secure
As part of our security provisions we have put in place a Data Breach Policy. We hope we never have to use it, but in case of such a scenario, rest assured that we have a policy which sets out how we will deal with any potential breach of security or data loss, so that it is handled in the most effective manner. This includes procedures on notifying the regulators of personal data breaches on our systems and promptly communicating any such breaches to you where you are affected
Putting the right policies and training in place
Ensuring third parties who we work with are also GDPR compliant
GDPR FAQ
Who is the Data Controller?
Capium Limited in the UK is the data controller, which is the company who you share your data with. We are registered in the UK with the ICO, our registration number is ZA070927and you can find our registration here.
Do we process personal data of our customers?
Yes, we process customer personal data which you provide Capium in order to allow us to provide our software and support services to you including specified purposes as described in our Privacy Policy (https://www.capium.com/privacy-policy/ ) and Terms of Service (https://www.capium.com/terms-of-service/).
Where do we send customer data?
Our goal is to provide you our customers with secure, valuable and reliable service. As a provider of a software platform and accountancy solution we seek to give you both a great service and good value.
As part of our service Capium requires that data be transferred to our group company in India. In addition, our employees and contractors may from time to time either when travelling access to data stored in the EU from a non-EU country for technical and support related reasons. In all cases where data is transferred outside of the E.U., Capium commits to ensuring such transfers are compliant with applicable data transfer laws, including GDPR.
What do I do if think there has been a data breach?
Who do we contact if we have any questions?
Capium is 100% committed to customers’ success and the protection of customer data. We hope that the above information helps demonstrate our resolve in this area. However, if you have any questions or require any further information then please do not hesitate to contact us or visit our website where relevant policies are kept.