Data Privacy regulations

Details about the data privacy regulation applicable to Hirescope

What is PIPEDA

PIPEDA stands for the Personal Information Protection and Electronic Documents Act. It is a privacy law in Canada that governs the collection, use, and disclosure of personal information by private-sector organizations. PEPEDA came into force on January 1, 2004, and it applies to businesses that operate in Canada and engage in commercial activities. The law also covers the use of electronic documents and transactions. Hirescope is committed to comply with its provisions to ensure the privacy and security of individuals' personal information.

Whats is GDPR

The General Data Protection Regulation (GDPR) is a comprehensive data protection and privacy regulation that came into effect on May 25, 2018, in the European Union (EU). It applies to all EU member states and governs the processing of personal data of individuals within the EU, as well as the export of personal data outside the EU. GDPR is designed to harmonize data protection laws across the EU, enhance the privacy rights of individuals, and reshape the way organizations approach data privacy.

Hirescope acting as controller

Horescope as data controller determines the purposes and means of processing personal data.
We are responsible for deciding why and how personal data is processed. We have the primary obligation to ensure that data processing activities comply with applicable data protection laws. This includes obtaining valid consent from prodcut/service user, providing transparency about data processing practices, and facilitating the exercise of individual rights.

Hirescope acting as processor

Hirescope as data processor processes personal data on behalf of a data controller. We act on the instructions of the data controller and are obligated to process personal data securely and in compliance with the controller's instructions. We are also required to implement appropriate security measures and assist controllers in meeting their compliance obligations. Hirescope does not determine the purposes or means of processing.

Ensuring Compliance

Ensuring compliance with privacy regulations like PIPEDA (Personal Information Protection and Electronic Documents Act) in Canada and GDPR (General Data Protection Regulation) in the European Union is crucial for hirescope as we handle personal data. Here are steps we take to ensure compliance:

  • Ensure Data Mapping and Inventory
  • Legal Review and Documentation
  • Manage Consent
  • Established robust security measures
  • Develop processes to facilitate individuals' rights
  • Data Breach Mnaagment & Response
  • Employee Training and Awareness
  • Record-keeping and Accountability
  • Vendor management