Welcome to your new East Suffolk Council website
Should you have any issues or feedback about the new site, please let us know at web@eastsuffolk.gov.uk.
Customer Services have provided this privacy notice to help you understand how we collect, use and protect your information whilst we provide you with a first point of contact customer service. This includes case information gathering, signposting and the directing of information to best resolve your enquiry in the most efficient manner.
The document below will describe how we may collect and process your personal information.
The purpose of this document is to clearly acknowledge the council’s responsibilities in relation to the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Personal data means any information related to an identified or identifiable natural (living) person (‘data subject’) i.e. a person that can be directly or indirectly identified by reference to a name, ID reference number, email address, location data, or physical, physiological, genetic, mental, economic, cultural or societal identifier.
Special personal data, previously known as ‘sensitive personal data’, relates to race, ethnic origin, politics, religion, trade union membership, genetic data, biometric data, health, sex life or sexual orientation. Records of criminal personal data must also be treated in a similar way.
Data Controller determines the purposes and means of processing personal data.
Data Processor is responsible for any operation which is performed on personal data on behalf of the controller, e.g. collection, recording, organisation, structuring, storage, adaption or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or making available, alignment or combination, restriction, erasure or destruction.
Third Party is someone/somebody who is not the Data Controller, the Data Processor or the Data Subject.
The Customer Service Team is the first point of contact for East Suffolk Council and is responsible for the day to day use and maintenance of the corporate CRM (Customer Relationship Management).
The council is the ‘data controller’ for the information which is collated and processed. This means we are responsible for deciding how we can use your Page | 2 information. If you want more information regarding the services delivered, please go to our website.
The council regards lawful and correct treatment of personal information as critical to their successful operations, maintaining confidence between the council and those with whom they carry out business. The Council will ensure that they treat personal information correctly in accordance with the law.
Customer Services provide a link for the customer to the council’s statutory, discretionary and contractual services, by providing the correct department within the council with only essential customer data to allow them to carry out a customer service request.
The Data Protection Officer for ESC is Siobhan Martin, Head of Internal Audit, and can be contacted at dataprotection@eastsuffolk.gov.uk.
UK GDPR says that we are allowed to use personal information only if we have a proper reason to do so. More information on how the law protects you can be found on the East Suffolk website.
UK GDPR provides us with main responsibilities for processing personal data. All personal information provided by you is held securely and in confidence by us in our computerised and other records. When we process your personal information, we do so in compliance with UK GDPR. For further information on our responsibilities, please see our website.
The UK GDPR and DPA 2018 provide you with the following rights:
You are responsible for making sure you give us accurate and up to date information, and to let us know if any personal information we hold is incorrect.
We collect information about you from different places, including:
The information about you which we will maintain will include:
We will be using your information to:
We will not use your personal data for other purposes other than for what it was collated unless we have obtained your consent or for other lawful purposes (e.g. detection and prevention of fraud). In Customer Services we do not use automated decision making.
We will hold your personal information for 3-5 years as per the Council’s retention policy or if your customer account remains inactive for a period of 2 years. Call recordings will be held for 12 months unless there is a live complaint in which case it will be held until the complaint has been resolved. For the Customer SELF service account, the customer is responsible for the maintaining and deletion of this account. You can request that your personal information is deleted at any time. You can request that your information is anonymised at any time.
We will share your personal information with:
To ensure we deliver our statutory obligations, we will share information, where applicable, with the Suffolk Office of Data and Analytics for analytical purposes to support us in meeting our statutory functions.
Currently, we do not transfer any personal information outside of the European Economic Area (EEA).
We may share information provided to us with other bodies responsible for auditing, or administering public funds, or where undertaking a public function, in order to prevent and detect fraud. For further information, see the East Suffolk website.