The ICO has published guidance for employers on data protection considerations if they want to carry out tests to check whether staff have symptoms of COVID-19 or the virus itself when they return to work. The principle consideration is that in carrying out tests employers will be processing information that relates to an identified or identifiable individual, so, they need to comply with the GDPR and the Data Protection Act 2018. That means handling it lawfully, fairly and transparently, remembering that personal data that relates to health is more sensitive and is classed as ‘special category data’ so it must be even more carefully protected. The guidance then goes on to consider issues such as: Which lawful basis can I use for testing employees? How can I show that our approach to testing is compliant with data protection law? What do I need to tell my staff? , and Can I share the fact that someone has tested positive with other employees?
ICO publish guidance for employers on workplace coronavirus testing
Article by: Makbool Javaid, Partner - Simons Muirhead & Burton |