Privacy and data protection policy

To operate efficiently, we must collect information about people, with who we work. These may include members of the public, current, past and prospective employees, funded bodies, and suppliers. We may also be legally required to collect and use information to comply with our statutory obligations.

We are registered with the Information Commissioner to process personal data. We are named as a data controller under the register kept by the Information Commissioner in accordance with section 19 of the Act.

To respect your privacy, we process your personal data in accordance with the eight data protection principles.

  1. Personal data shall be processed fairly and lawfully.
  2. Personal data shall be obtained only for one or more specified and lawful purposes, and shall not be further processed in any manner incompatible with that purpose or those purposes.
  3. Personal data shall be adequate, relevant and not excessive in relation to the purpose or purposes for which they are processed.
  4. Personal data shall be accurate and, where necessary, kept up to date.
  5. Personal data processed for any purpose or purposes shall not be kept for longer than is necessary for that purpose or those purposes.
  6. Personal data shall be processed in accordance with the rights of data subjects under this Act.
  7. Appropriate technical and organisational measures shall be taken against unauthorised or unlawful processing of personal data and against accidental loss or destruction of, or damage to, personal data.
  8. Personal data shall not be transferred to a country or territory outside the European Economic Area unless that country or territory ensures an adequate level of protection for the rights and freedoms of data subjects in relation to the processing of personal data.

The Act refers to the term 'personal data'. For information held by NESTA, this means any recorded information held by us and from which a living individual can be identified. It may include:

  • name and job title;
  • contact information such as telephone numbers, addresses and emails;
  • age, disability status, ethnicity, gender and nationality;
  • occupation and company details;
  • other information relevant to our HR function.

It will include any expression of opinion about a living individual - or any indication of our intentions about that individual.

We may use this information for the following reasons:

  • to carry out our statutory functions;
  • licensing and registration;
  • complaints and dispute handling;
  • investigations;
  • research;
  • improving our services;
  • sending information, which we think may be of interest to you;
  • staff administration including HR functions;
  • to pass your details to accountants, consultants and other professionals for obtaining professional advice and complying with our contractual obligations;
  • complying with our legal obligations.

Monitoring and recording of communications

We may monitor or record any communication between you and NESTA for quality control and training purposes.

Security

We have appropriate technical and organisational measures to prevent the unauthorised or unlawful processing of your personal information - and accidental loss or destruction of, or damage to, your personal information.

Cookies

Cookies are text files, which identify a user's computer to our server. Cookies don't identify individual users, only the computer used. Our site uses cookies for collecting user information. The information we gather from cookies may be used in the same way as detailed above.

Retention of personal information

We will not keep your personal information for longer than is necessary for our purposes.

Links to other websites

Our website contains links to other sites. We aren't responsible for the data protection and privacy practices on any other sites. We encourage you to be aware of this when you leave our site and to read the data protection and privacy statements on other websites you visit, which collect personally identifiable information. This statement applies solely to our website.

Your rights to access your personal information

All requests for information will be processed under the Data Protection Act 1988. You don't need to complete a form, but you'll be asked to provide sufficient information for us to:

  • identify you and the nature of your request;
  • ensure we are releasing personal information to the right person.

A charge of £10.00 will be made for every request. Please send your request to information@nesta.org.uk

Complaints about how we process your personal information

In the first instance, you should contact NESTA. Complaints should be addressed to:

The Compliance Officer
NESTA
1 Plough Place
London EC4A 1DE

020 7438 2500
information@nesta.org.uk

This statement may change from time to time, so please review it regularly.

Home