Data Protection Policy
Introduction
The matter of data protection is reviewed by us on an ongoing basis in order to identify and to manage any breaches of data protection and the protection of our clients data is extremely important to Winchester Hawkins.
It is the policy of Winchester Hawkins to avoid, wherever possible, breaches that would lead to our clients personal data being compromised.
Procedure
Personal data shall be:
- Processed fairly and lawfully and shall be obtained only for one specified and lawful purpose, that is, for the purpose of obtaining insurance terms on our clients behalf and shall not be further processed in any manner incompatible with that purpose or purposes;
- Shall be adequate, relevant and not excessive in relation to the purpose or purposes for which it is processed;
- Shall be accurate and kept up to date where necessary;
- Shall be held securely;
- Shall not be kept for longer than is necessary for the purpose or purposes that it was obtained;
- Shall be processed in accordance with the rights of data subjects have under the Data Protection Act;
- Appropriate technical and organisational procedures shall be in place against unauthorised or unlawful processing of personal data and to prevent accidental loss or destruction of or damage to our clients personal data;
- Personal data shall not be transferred to a country or territory outside of the United Kingdom and/or the European Union unless that country or territory ensures an adequate level of protection for the rights and freedoms of data subjects have in relation to the processing of personal data.
Winchester Hawkins shall advise our clients as to why we require their personal data if not apparent to them and that they have the right to see their personal data following their request for this to be released to them and that they may update their personal data if it is wrong.
Winchester Hawkins shall advise the Information Commissioner’s Office on an annual basis on how our business uses personal data.