The retention of personal data is mainly governed by the requirements of the Data
Protection Act, and the associated Codes of Practice. Ensure that you have clear
guidelines and procedures for document retention to ensure compliance with these, and
that managers do not keep duplicate copies of documents in separate files.
The Information Commissioner's Office has produced two new guidance documents:
the first to help employers comply with the Data Protection Act when providing employee
liability information under the Transfer of Undertakings (Protection of Employment)
Regulations 2006 (TUPE). See: TUPE. The second is for organisations
that need to share people's personal information. See data protection.
KPMG found that 280 million people have lost personal details over the last three
years and identified the most vulnerable sectors as education and healthcare.
We've added a data access request form to the website.