UK GDPR Compliance

How SecureOps complies with UK data protection regulations

Our Commitment to UK GDPR

SecureOps is fully compliant with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. We take data protection seriously and have implemented comprehensive measures to ensure your data is secure.

Your Rights Under UK GDPR

Right to Access - Request copies of your personal data
Right to Rectification - Request correction of inaccurate data
Right to Erasure - Request deletion of your data
Right to Restrict Processing - Limit how we use your data
Right to Data Portability - Receive your data in a portable format
Right to Object - Object to certain types of processing

Data Protection Measures

We implement the following security measures:

  • End-to-end encryption for all data in transit and at rest
  • Regular security audits and penetration testing
  • Access controls and authentication mechanisms
  • Data backup and disaster recovery procedures
  • Staff training on data protection best practices

Lawful Basis for Processing

We process personal data under the following lawful bases:

  • Contract: To provide our services to you
  • Legal Obligation: To comply with BS7858 vetting requirements
  • Legitimate Interests: To improve our services and prevent fraud
  • Consent: For marketing communications (where applicable)

Data Retention

We retain personal data for as long as necessary to fulfill the purposes outlined in our Privacy Policy, including compliance with legal obligations such as BS7858 vetting records.

International Data Transfers

All data is stored and processed within the United Kingdom. We do not transfer personal data outside the UK without appropriate safeguards.

Contact Our Data Protection Officer

For any questions about our GDPR compliance or to exercise your rights, contact our Data Protection Officer at dpo@secureops.co.uk