In the course of the conduct of our business and in order to operate effectively, IGS might collect, use and disclose personal information about individuals, including but not limited to personal information of current, past and prospective employees and personal information of individuals related to or provided by our individual or corporate clients and suppliers.
The purpose of this policy is to detail our approach to protection of Personal Data (as defined below) and to ensure the consistent handling of Personal Data and compliance with the regulations of the Singapore Personal Data Protection Act 2012 (“PDPA”) – further information: www.pdpc.gov.sg
“Personal Data” is defined by the PDPA as data, whether true or not, about an individual who can be identified from that data or from that data and other information to which an organization has or is likely to have access.
Personal Data collected, used and disclosed by IGS will include a variety of information such as the full name, personal contact details, NRIC/Passport number, information about income, bank account information, education, work experience, date and place of birth, marital status, religion and such other information as may be required for the purposes as stated below.
Purposes of collection, use and disclosure of Personal Data
IGS may collect, use and disclose Personal Data for the purposes of:
i) providing services in the ordinary course of work;
ii) client relationship management (including sending updates, information relating to our services and business, services offered by third parties, events invitation, newsletters or publications and marketing material);
iii) regulatory compliance and internal record keeping;
iv) managing or terminating employment relationships and for evaluative purposes with respect to employees;
v) evaluating and processing employment applications;
vi) all other purposes necessary and/or incidental to our business and all purposes necessary for or related to any of the above purposes.
Should Personal Data be required to be used for a new purpose, the data subject’s approval will be obtained prior to using his/her Personal Data for the new purpose or the data subject will be notified respectively, provided that no exemption to the consent or notification obligation applies according to the PDPA.
Disclosure and Transfer of Personal Data
Personal Data may be disclosed within IGS, to any of its existing or future related or associated companies or to any other third party/ies such as auditors, professional consultants or advisors (including law firms), accountants, agents, insurers, governmental bodies and authorities or any other third party in order to satisfy the purposes for which the Personal Data has been collected.
Personal Data may also be transferred outside Singapore in accordance with the requirements of the PDPA.
Appropriate technical, organizational and administrative security measures are in place to protect Personal Data against unauthorized access, collection, use, disclosure, copying, alteration, accidental loss or theft, destruction, damage or similar risks.
Employees of IGS handling Personal Data are made aware of the importance of maintaining confidentiality of the Personal Data collected. The access of employees to Personal Data is on a need to know basis only.
IGS will keep Personal Data not longer than is necessary for the purpose it was collected for or for any business or legal purposes (“Purposes”). IGS will take all reasonable steps to ensure that all Personal Data is destroyed, permanently deleted or anonymized if it is no longer required for those Purposes.
Personal Data held by IGS is usually provided either by the data subject himself/herself and IGS is therefore not responsible for its accuracy in the first instance. However, if there is a complaint about the inaccuracy of Personal Data kept by IGS, that complaint can be referred to the IT Service Provider.
Rights of Data Subject
Under the PDPA the data subject has the right to withdraw his/her consent to the collection, use and disclosure of his/her Personal Data. In the event that a data subject has withdrawn his/her consent, IGS will advise the data subject on the consequences of the withdrawal and will cease to use or disclose the Personal Data in case the data subject’s consent is legally required.
According to the PDPA the data subject has the right to access information held about him/her by IGS and, if the details are inaccurate, the data subject may request that the data be amended. The right of access and correction can be exercised in accordance with the PDPA. Any access request may be subject to a fee to meet the cost for providing the data subject with details of the information IGS holds about the data subject. Such request shall be made in writing to the IT Service Provider at the address below.
Data Protection Officer
IGS has appointed Mr./ Ms. Viet as their Data Protection Officer. Any requests and complaints shall be addressed to the Data Protection Officer. The Data Protection Officer can be contacted via the email address firstname.lastname@example.org
Amendment of Policy
IGS reserves the right to change or amend this Personal Data Protection Policy from time to time at its sole discretion. The revised Policy will be available from the Data Protection Officer.
Do you need further information? Please contact IGS’s IT Service Provider