This page covers how we ensure that we are GDPR compliant.
Gislen Software Private Limited is located outside the European Union. However, we work primarily with clients in the European Union, sometimes via one of our wholly-owned subsidiaries in the European Union. GDPR applies to how we handle personal data about European subjects, and we are fully committed to achieving full compliance.
We have identified the areas in which GDPR affects our work:
- Our website stores visitors’ personal information and provides forms for visitors to use to contact us or comment on posts. We also use service providers to support the site, which, according to GDPR, act as processors for analysing visitor data.
- Our back-office systems in India store data about client contacts in emails, documents, and other ways.
- We are processors for our European clients who handle the personal data of European subjects. This is done remotely from our office; the data remains on European servers. In most cases, our role is to support the systems and not process personal data. However, we often have access to the data to support the systems. We will sign processor agreements with relevant clients based on the Standard Clauses provided by the Commission.
Our priority is our clients’, employees’, and customers’ privacy rights. We intend to achieve full GDPR compliance and ensure that individual privacy is maintained in every way.
What is GDPR?
GDPR stands for the General Data Protection Act, legislation which provides comprehensive pan-European data protection. GDPR was introduced in the European Union and the European Economic Area (EU/EEA) in May 2018, replacing the 1995 Data Protection Directive. GDPR regulates authorities and organisations as to how they are allowed to process data (called ‘personal data’) about individuals in the EU (called ‘data subjects’), including collecting, storing, transferring or using.
GDPR gives individuals free of charge rights to control their data. Individuals have the right to know what data an organisation stores about them and request a correction, deletion or even transfer to another organisation when applicable. GDPR requires organisations to report breaches within 72 hours of discovery. The regulatory bodies in each country are getting significantly more ability to enforce compliance and impose high fines for non-compliance and breaches.
For more information about the GDPR, please read the official web page.
Gislen Software GDPR compliance and information
Our website has a few pages describing our roadmap to GDPR Compliance and further information about GDPR.