Introduction


Career Ease IT Solutions values your privacy and is fully committed to protecting personal data. This GDPR Compliance Policy explains how we handle personal information in accordance with the General Data Protection Regulation (GDPR), ensuring transparency, security, and lawful processing for all individuals, including those within the European Union (EU).

Scope


This GDPR Compliance Policy applies to all personal data collected, processed, or stored by Helix IT Solutions. It covers information related to employees, clients, website visitors, partners, and any other individuals whose data we manage. Our goal is to handle all personal data responsibly and in full compliance with GDPR requirements.

Principles of GDPR Compliance


  • Lawfulness, Fairness, and Transparency: We handle personal data in a lawful, fair, and transparent manner, ensuring individuals understand how their data is used.
  • Purpose Limitation: Data is collected solely for specific, legitimate purposes and not used for unrelated activities.
  • Data Minimization: We collect and retain only the personal data necessary to fulfill the intended purpose.
  • Accuracy: We take reasonable steps to ensure personal data is accurate, complete, and kept up to date.
  • Storage Limitation: Personal data is retained only as long as needed, or as required by law or consent.
  • Security: Robust technical and organizational measures are implemented to protect data against unauthorized access, loss, or disclosure.
  • Accountability: We maintain detailed records of processing activities, appoint a Data Protection Officer (DPO) when necessary, and provide GDPR training to employees.

Lawful Basis for Processing


Helix IT Solutions processes personal data only when there is a valid legal basis under GDPR. This may include:

  • Consent: You have given clear permission for your data to be processed.
  • Contractual Necessity: Processing is necessary to fulfill a contract with you.
  • Legal Obligation: Processing is required to comply with the law.
  • Vital Interests: Processing is necessary to protect someone’s life.
  • Public Task: Processing is necessary for carrying out official functions.
  • Legitimate Interests: Processing is necessary for legitimate purposes, as long as it does not override your rights.

Each processing activity is carefully assessed, documented, and reviewed to ensure compliance with GDPR requirements.

Data Subject Rights


Under GDPR, you have the following rights regarding your personal data:

  • Access: Request a copy of the data we hold about you.
  • Rectification: Correct any inaccurate or incomplete data.
  • Erasure: Request deletion of your personal data.
  • Restriction: Limit how your data is processed.
  • Data Portability: Receive your data in a portable format.
  • Objection: Object to certain types of data processing.

We aim to respond to all requests promptly and in accordance with GDPR requirements.

Data Transfers


When personal data is transferred outside the EU, we implement appropriate safeguards, such as Standard Contractual Clauses or approved certifications, to ensure your data remains secure and GDPR-compliant.

Data Breach Notification


If a data breach occurs that may affect your rights or freedoms, we will promptly assess the situation and notify both the relevant supervisory authorities and affected individuals as required by GDPR.

Third-Party Processors


We only work with third-party processors that demonstrate GDPR compliance. Data processing agreements are in place to ensure all processing is lawful, secure, and transparent.

Training and Compliance Monitoring


Our employees receive regular GDPR training to ensure understanding of their responsibilities. All data processing activities are continuously monitored and reviewed to maintain compliance.

Contact Information


If you have any questions or wish to exercise your GDPR rights, please contact our Data Protection Officer (DPO) at info@careereaseitsolutions.com.

Thank you for taking the time to review our GDPR Compliance Policy. Your privacy and data protection are important to us.