Search
Close this search box.

GDPR – employers advised to review employment contracts

All UK employers are expected to comply with the GDPR as it seeks to increase protection around the unauthorised use of employee’s personal data. The added duties which accompany the GDPR have caused much consternation amongst employers as many fear the onerous task of altering long established workplace practices to remain compliant.
july

All UK employers are expected to comply with the GDPR as it seeks to increase protection around the unauthorised use of employee’s personal data. The added duties which accompany the GDPR have caused much consternation amongst employers as many fear the onerous task of altering long established workplace practices to remain compliant.

A common question for employers to consider is whether they need to amend pre-existing employment contracts to comply with the GDPR. Naturally this is a concern for employers given how the process for amending contractual clauses can typically include a prolonged consultation period. However, there is no specific obligation to amend an employee’s contract although employers may wish to update any references to previous data protection laws.

Instead, under GDPR, employers can use a separate privacy notice for all current and future employees to meet the employee’s right to be informed. Privacy notices should provide sufficient information on the processing of employee’s personal data including the business reason(s) and legal basis for doing so. Employees also have a right to be informed of the retention period of their personal data and of their own data rights.

Employers can also consider creating a specific GDPR and data protection workplace policy to provide an information and guidance document for all members of staff. They should also review and amend existing policies on matters such as IT usage and CCTV surveillance to ensure they remain in line with the new obligations under GDPR. Having appropriate policies is key to outlining an organisations continued commitment to the GDPR and will help ensure business practices remain compliant.

As with any new legislation, the first few months following GDPR may result in an influx of employee queries as staff seek to gain a greater understanding of their rights. Employers can consider ways to inform staff by deconstructing the complexities of GDPR into laymen’s terms. Therefore, it may be beneficial to provide updated employee handbooks or arrange for staff training sessions to explain the everyday practicalities of GDPR and what it means for them.

As the deadline approaches employers are urged to make proactive attempts to get to grips with GDPR. Rather than having to re-invent the wheel, in many cases measured additions to existing workplace practices will help ensure your organisation remains compliant come 25th May.


Receive more HR related news and content with our monthly Enewsletter (Ebrief)

Read more

Latest News

Read More

Rise in recruitment fraud must urgently be checked

28 March 2024

Newsletter

Receive the latest HR news and strategic content

Please note, as per the GDPR Legislation, we need to ensure you are ‘Opted In’ to receive updates from ‘theHRDIRECTOR’. We will NEVER sell, rent, share or give away your data to third parties. We only use it to send information about our products and updates within the HR space To see our Privacy Policy – click here

Latest HR Jobs

University of Cambridge – Judge Business SchoolSalary: £32,332 to £38,205 pa, pro rata

University of Cambridge – Judge Business SchoolSalary: £29,605 to £33,966 pa, pro rata

University of Oxford – Blavatnik School of GovernmentSalary: Grade 5: £28,759 – £33,966 per annum (with a discretionary range to £37,099)

Software Development Director (Exec Team Seat). Remote Working with Ellesmere Port Office-Based Minimum 1 Day Per Week. + Contribution towards membership fees. £120,000 – £140,000

Read the latest digital issue of theHRDIRECTOR for FREE

Read the latest digital issue of theHRDIRECTOR for FREE