
{"id":1135,"date":"2022-05-13T11:20:33","date_gmt":"2022-05-13T10:20:33","guid":{"rendered":"https:\/\/www.bcta.group\/sitma\/?page_id=1135"},"modified":"2023-06-27T18:56:54","modified_gmt":"2023-06-27T17:56:54","slug":"gdpr-data-management","status":"publish","type":"page","link":"https:\/\/www.bcta.group\/sitma\/gdpr-data-management\/","title":{"rendered":"GDPR &#038; Data Management"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-page\" data-elementor-id=\"1135\" class=\"elementor elementor-1135\" data-elementor-settings=\"{&quot;ha_cmc_init_switcher&quot;:&quot;no&quot;}\" data-elementor-post-type=\"page\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-4a0860c elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"4a0860c\" data-element_type=\"section\" data-e-type=\"section\" data-settings=\"{&quot;_ha_eqh_enable&quot;:false}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-4e9e1c3\" data-id=\"4e9e1c3\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-ca834f3 elementor-widget elementor-widget-heading\" data-id=\"ca834f3\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">SITMA GDPR Policy<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-ed291ae elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"ed291ae\" data-element_type=\"section\" data-e-type=\"section\" data-settings=\"{&quot;_ha_eqh_enable&quot;:false}\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-c2605b5\" data-id=\"c2605b5\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-b7e5ce2 elementor-widget elementor-widget-heading\" data-id=\"b7e5ce2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Introduction<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-70e05d8 elementor-widget elementor-widget-text-editor\" data-id=\"70e05d8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>The General Data Protection Regulation (GDPR) is a comprehensive EU data protection law that came into effect on May 25, 2018. The purpose of this policy is to establish guidelines and procedures related to the management of personal data within the Sound Insulation Testing and Measurement Association (SITMA) in compliance with the GDPR. This policy applies to all individuals and entities involved in the collection, processing, storage, and dissemination of personal data related to the certification scheme.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c916d75 elementor-widget elementor-widget-heading\" data-id=\"c916d75\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Data Management<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-32108d7 elementor-widget elementor-widget-text-editor\" data-id=\"32108d7\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Collection:\u00a0<\/p><p>Personal data collected during the certification process shall only be used for the purpose of assessing and maintaining certification. The collection of personal data shall be limited to what is necessary and relevant to the certification process. Personal data shall only be collected with the consent of the individual concerned and in accordance with all applicable data protection laws and regulations, including the GDPR.<\/p><p>All test data uploaded by individuals to the SITMA lodgement system may be used for the used and shared with pre-approved research bodies and home nation governments. Any personal data that may be included in the test data shall be strictly managed in accordance with applicable privacy and data protection laws and regulations.<\/p><p>Processing:\u00a0<\/p><p>All personal data shall be processed in accordance with the GDPR and all applicable privacy and data protection laws and regulations. The organisation shall ensure that personal data is accurate, up-to-date, and not kept longer than necessary. Access to personal data shall be limited to authorized personnel only.<\/p><p>Storage:\u00a0<\/p><p>All personal data shall be stored securely in accordance with the GDPR and all applicable privacy and data protection laws and regulations. Personal data shall be adequately protected against unauthorised access, accidental loss or damage, and unlawful destruction or disclosure. The organisation shall ensure that all data processors and third-party service providers involved in the storage of personal data meet the same strict security requirements.<\/p><p>Dissemination:\u00a0<\/p><p>Personal data shall not be disclosed to third parties without the explicit consent of the individual concerned, unless required by law or for the purpose of certification. the organization shall ensure that any third parties with access to personal data comply with the GDPR and all applicable privacy and data protection laws and regulations.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a9add2f elementor-widget elementor-widget-heading\" data-id=\"a9add2f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Data Subject Rights<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-90c6fa5 elementor-widget elementor-widget-text-editor\" data-id=\"90c6fa5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>All individuals providing personal data to the SITMA certification scheme have the following GDPR-related rights:<\/p><ol><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Access: Any individual has the right to obtain confirmation as to whether or not their personal data is being processed, and if so, to access their personal data and related information.<\/span><\/li><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Rectification: Any individual has the right to request the rectification of their personal data if it is inaccurate, incomplete, or out-of-date.<\/span><\/li><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Erasure: Any individual has the right to request the erasure of their personal data in certain circumstances, such as if the personal data is no longer necessary for the purpose for which it was collected.<\/span><\/li><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Restriction of Processing: Any individual has the right to request the restriction of processing of their personal data in certain circumstances, such as if the accuracy of the personal data is contested.<\/span><\/li><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Data Portability: Any individual has the right to receive their personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.<\/span><\/li><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Object: Any individual has the right to object to the processing of their personal data in certain circumstances, such as if the processing is for direct marketing purposes.<\/span><\/li><li><span style=\"font-size: 16px; color: var( --e-global-color-text );\">Right to Withdraw Consent: Any individual has the right to withdraw their consent to the processing of their personal data at any time.<\/span><\/li><\/ol>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-e5c09ea elementor-widget elementor-widget-heading\" data-id=\"e5c09ea\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Implementation<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d917e52 elementor-widget elementor-widget-text-editor\" data-id=\"d917e52\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>This policy shall be implemented by all relevant personnel within the organisation. SITMA shall provide appropriate training and resources to ensure compliance with the GDPR and all applicable privacy and data protection laws and regulations. This policy shall be reviewed and updated as necessary to reflect changes in the organisation&#8217;s activities and regulatory environment.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-46d300e elementor-widget elementor-widget-heading\" data-id=\"46d300e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">Conclusion<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f630628 elementor-widget elementor-widget-text-editor\" data-id=\"f630628\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>SITMA is committed to ensuring compliance with the GDPR and all applicable privacy and data protection laws and regulations. This policy sets out our framework for the management of personal data within the SITMA certification scheme in accordance with the GDPR, reflecting our commitment to the highest standards of data security and confidentiality.<\/p><p>\u00a0<\/p><p>PUS020 v1.0<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>SITMA GDPR Policy Introduction The General Data Protection Regulation (GDPR) is a comprehensive EU data protection law that came into<\/p>\n","protected":false},"author":3,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"elementor_header_footer","meta":{"_eb_attr":"","footnotes":""},"class_list":["post-1135","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/pages\/1135","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/comments?post=1135"}],"version-history":[{"count":8,"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/pages\/1135\/revisions"}],"predecessor-version":[{"id":1632,"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/pages\/1135\/revisions\/1632"}],"wp:attachment":[{"href":"https:\/\/www.bcta.group\/sitma\/wp-json\/wp\/v2\/media?parent=1135"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}