Isle of Man Society of Chartered Accountants
GDPR Policy
1. Introduction
Isle of Man Society of Chartered Accountants (IOMSCA) is committed to ensuring that personal data is handled in compliance with the IOM General Data Protection Regulation (IOM GDPR) and the Data Protection Act 2018. This policy outlines how we collect, process, store, and protect personal data.
2. Scope
This policy applies to all personal data processed by IOMSCA concerning Members, event attendees and third party suppliers.
3. Data We Collect
We may collect and process the following personal data:
- Personal Details: Name, email address, phone number, postal address, employee details.
- Technical Data: IP address, browser type, device information, cookies.
- Communication Records: Emails, chat logs, and customer service interactions.
4. Lawful Basis for Processing
We process personal data under the following lawful bases:
- Consent: When you provide explicit consent.
- Contractual Necessity: When processing is necessary to fulfil a contract.
- Legal Obligation: When required to comply with legal or regulatory requirements.
- Legitimate Interests: When processing is necessary for business operations and does not override individual rights.
5. How We Use Your Data
We use personal data for:
- Providing our members with updates on Society activities, events and relevant industry information.
- Communicating with you and responding to inquiries.
- Ensuring compliance with legal obligations.
6. Data Sharing & Transfers
We may share your personal data with the ICAEW to in accordance with the written instructions given by the Society, which the Parties agree shall be as set out in this Schedule and the Agreement:
- Legal and regulatory authorities if required by law.
7. Data Retention
We only retain personal data for as long as necessary for the stated purposes or as required by law. Once no longer needed, we securely delete or anonymize it.
8. Data Security
We implement appropriate security measures to protect personal data against unauthorized access, alteration, or loss.
9. Your Rights Under IOM GDPR
Under the IOM GDPR, individuals have the right to:
- Access their data (Subject Access Request).
- Correct inaccurate or incomplete data.
- Request deletion of their data (Right to be Forgotten).
- Restrict or object to processing.
- Request data portability.
- Withdraw consent at any time.
To exercise your rights, contact us at iomsca.im
10. Cookies
We use cookies and similar technologies for website functionality and analytics. For details, see our Cookie Policy.
11. Updates to This Policy
We will review this policy annually. Any resulting changes will be posted on our website with the updated date.
12. Contact Information
For any questions regarding this policy or your data rights, please contact:
Jessica Bulliment, Society Executive
Email: info@iomsca.im