Type in product code or name:
We are committed to protecting the privacy and security of personal data. This policy describes how we collect and use your personal data.
We are Everest Biotech Limited (Company registration no: 3870943), trading as Everest Biotech. Our office address (which is also our Registered Office) is at Cherwell Innovation Centre, 77 Heyford Park, Upper Heyford, OX25 5HD, UK.
The person with responsibility for our data protection compliance is the Operations Director, Monika Mobley(“the Data Protection Manager”), and she can be contacted via email at [email protected] or by telephone on 01869238326.
We are the data controller of the personal data that we keep and use, and we are therefore responsible for making sure that our systems, processes and employees comply with the relevant data protection laws in respect of that personal data.
We will act in respect of personal data to comply with the six principles of the General Data Protection Regulation (“GDPR”), which are:
• Lawfulness, fairness and transparency;
• Purpose limitation;
• Data minimisation;
• Accuracy;
• Storage limitation;
• Integrity and confidentiality.
You have rights in respect of how your personal data can be processed; these include the right to request:
• a copy of your personal data;
• that inaccurate data is rectified; and
• that your personal data is, in certain circumstances, erased or restricted.
You have the right to complain to the Information Commissioner, which you can do by contacting the Information Commissioner’s Office (ICO) directly. Full contact details, including a helpline number, can be found on the ICO website (www.ico.org.uk). This website also has useful information on your rights and our obligations. However, please raise any concerns or issues with us first so that we may deal with this as quickly as possible for you.
COLLECTION, USE AND DISCLOSURE OF PERSONAL DATA
We collect and process data for the following reasons:
1. personal data collected and created in relation to processing orders (name, shipping and billing address); and
2. personal data relating to our employees
1. Processing orders
COLLECTION:
We will collect personal information which may include names, shipping and billing address, email address and a telephone number as provided on the purchase order.
USE:
We will use the personal data for processing your order. We will only use your personal data when the law allows us to. Most commonly, we will use your personal data in the following circumstances:
• Shipping your order
• Issuing invoice
We may also use your personal data in the following situations, which are likely to be less common:
• where we need to protect your interests (or someone else’s interests);
• where it is needed for official purposes.
DISCLOSURE:
We share personal data with shipping companies in order to fulfil your order.
In respect of all disclosures of personal data, we will only share the personal information which is necessary for the particular purpose for which it is provided, or where we have another legitimate interest in doing so, and we will ensure that the personal data is appropriately protected.
RETENTION PERIOD:
We will keep personal data only for as long as is necessary to fulfil the purposes for which we collected it, including for the purposes of satisfying any legal, accounting or reporting requirements. Normally, our retention period for personal data collected for this purpose is a minimum of 6 years after the end of the period that we are providing legal services.
2. Our employees
COLLECTION:
We will collect names, addresses, contact details, education and employment history, identity and other background checks (which may include appropriate criminal and financial checks and confirmation of the right to work in the UK), marital status and information on next of kin and dependents, financial information (such as bank details and NI numbers), date of birth, gender, a copy of your passport and driving licence, performance information and compensation history, recruitment information (including references), salary, benefits, pension and annual leave information, disciplinary and grievance information, photographs, information about your use of our information and communications systems or other information obtained through electronic means.
We may collect and use special categories of personal data as required in the carrying out of obligations and exercising specific rights of us or the data subject in the field of employment. This may include information relating to matters such as health, racial origin, religious belief and offences or alleged offences.
Personal data may be collected from you during the selection process (for example via your application form and CV) and during your employment (including holiday forms, expense claims, performance reviews, any disciplinary or grievance processes), or from third parties, including referees, health service providers, background check providers.
USE:
Personal data of our employees will be used for HR administration and management, both in respect of the selection of people to work for us (including suitability, eligibility and/or fitness to work), and those who do work for us, to include learning and development, disciplinary and security (of people, offices and data) requirements, providing and liaising with benefits providers, business management and planning (including accounting and auditing), paying you and dealing with tax and NI deductions, assessing and deciding on salary reviews and compensation, conducting performance reviews and managing performance, dealing with legal disputes involving you or others, preventing fraud, monitoring your use of our information and communications systems, ensuring compliance with our policies, and equal opportunities monitoring.
We will only use your personal data when the law allows us to. Most commonly, we will use your personal data in the following circumstances:
• In performance of a contract with you; and/or
• compliance with a legal obligation; and/or
• vital interests of the data subject; and/or
• where it is necessary for our legitimate interests (or those of a third party) and your interests and fundamental rights do not override those interests.
We may also use your personal data in the following situations, which are likely to be less common:
• where we need to protect your interests (or someone else’s interests);
• where it is needed in the public interest or for official purposes.
In respect of all disclosures of personal data, we will only share the personal information which is necessary for the particular purpose for which it is provided, or where we have another legitimate interest in doing so, and we will ensure that the personal data is appropriately protected.
In respect of special categories of personal data, we may process this in the following circumstances:
• in limited circumstances with your explicit written consent; and/or
• where we need to carry out our legal obligations and in line with our policies; and/or
• where it is needed in the public interest (such as for equal opportunities monitoring or in relation to our occupational pension scheme), and in line with our policies; and/or
• where it is needed to assess your working capacity on health grounds, subject to appropriate confidentiality safeguards.
Less commonly, we may process this type of information where it is needed in relation to legal claims or where it is needed to protect your (or someone else’s) interests and you are not capable of giving your consent, or where you have already made the information public. We may also process such information about our people (or former people) in the course of our legitimate business activities with the appropriate safeguards.
The special categories of personal data may be used in the following ways:
• in relation to leaves of absence, to comply with employment and other laws;
• in relation to your physical or mental health, or disability status, to ensure your health and safety in the workplace and to assess your fitness to work, to monitor, manage and administer benefits and absences;
• in relation to your race, national or ethnic origin, religious, philosophical or moral beliefs, or your sexual life or sexual orientation, to ensure meaningful equal opportunity monitoring and reporting.
DISCLOSURE:
Personal data may be transferred to service providers who support the operation of our business (such as payroll service providers), to other third parties reasonably necessary in the conduct of our business (including insurers, professional advisors, regulators). These third parties may be acting as processor, or controller of personal data in their own right.
In respect of all disclosures of personal data, we will only share the personal information which is necessary for the particular purpose for which it is provided, or where we have another legitimate interest in doing so, and we will ensure that the personal data is appropriately protected.
RETENTION PERIOD:
We will keep personal data only for as long as is necessary to fulfil the purposes for which we collected it, including for the purposes of satisfying any legal, accounting or reporting requirements. We will normally keep personal data of applicants who we do not employ for six months after we receive it.
We will keep personal data of employees throughout your employment and normally for a minimum of six years after your employment ends.
3. Changes to your personal data
It is very important that the personal information that we hold about you is accurate and current. Please tell us if your personal information changes during your relationship with us.
4. Data Security
We have put in place measures to prevent your personal data from being accidentally lost, used or accessed in an unauthorised way, altered or disclosed. In addition, we limit access to your personal data to those of our people and other third parties who have a business need to know. They will only process your personal data on our instructions and where they have agreed to treat the information confidentially and to keep it secure. We store data electronically on a password protected server.
Personal data may be transferred outside of the EEA by processors acting on our behalf. For transfers to countries not considered adequate by the EC, we will ensure that personal data is adequately protected, as required by the GDPR. This would include by use of the Standard Contractual Clauses adopted by the EC to protect personal data.
5. Your rights
Under certain circumstances, you have the right by law to request:
• access to your personal data. This enables you to ask to receive a copy of the personal data that we hold about you and to check that we are lawfully processing it.
• correction of the personal data that we hold about you.
• erasure of your personal data.
• Object to processing of your personal data where we are relying on our legitimate interest and there is something about your particular situation which makes you want to object to processing on this ground. You also have the right to object where we are processing your personal information for direct marketing purposes.
• restriction of processing of your personal data.
• transfer of your personal data to another party.
6. Our website
When you browse our website we establish a basic visitor profile via small text files - cookies. This information will contain information about what pages you viewed, geographic location and whether you are a new or returning site visitor. It does not determine any personal data such as name, address or email. You can choose to accept or decline cookies. You can modify your browser setting to decline cookies. To find out more visit http://www.allaboutcookies.org/.
Our website may contain links to enable you to visit other websites easily. However, once you have used these links to leave our site, you should note that we do not have any control over that other website. Therefore, we cannot be responsible for the protection and privacy of any information which you provide whilst visiting such sites and such sites are not governed by this privacy statement. We recommend that you check their privacy policies before submitting any details to them.
We do not sell, trade or rent your personal details to third parties.
CHANGES TO THIS PRIVACY POLICY
By using our website and submitting your information you consent to that information as set out in this policy. If we change our policy we will post changes to this page.