top of page

Website Privacy Notice – EPM & NEDEX

 

About this notice

​

This Privacy Notice explains how EPM Limited (“EPM”) collects, uses and protects your personal information. EPM also runs NEDEX, an educational network designed to connect people, share knowledge, and provide opportunities to learn and collaborate. NEDEX is part of EPM (it is not a separate legal entity). When you join an EPM service, you will also become part of NEDEX so you can access its resources and activities, unless you choose to opt out.

​

Visitors to our websites

​

When someone visits www.nedex.co.uk, we use a third-party service, Google Analytics, to collect standard internet log information and details of visitor behaviour patterns. This helps us understand the number of visitors to different parts of the site. This information is processed in a way which does not identify anyone. We do not allow Google to attempt to identify visitors. If we collect personally identifiable information, we will make it clear and explain what we intend to do with it.

​

Use of cookies by EPM

​

We may collect information about your computer, including your IP address, operating system and browser type, for system administration and reporting purposes. This is statistical data about our users’ browsing actions and patterns and does not identify individuals.
We may also use cookies – small files stored on your device – to improve our site and deliver a more personalised service. You may refuse cookies in your browser settings, but this may limit site functionality.

​

E-newsletter, Events and NEDEX Membership

​

We use HubSpot and Salesforce to deliver bulletins and event invitations, and to gather statistics on engagement. When you sign up for EPM services, events or resources, you will automatically be enrolled in NEDEX. As part of this, your contact details and relevant participation data will be used within EPM for the purposes of administering NEDEX membership and related activities. You may opt out at any time.

​

Security and Performance

​

We use The Marketing Pod to help maintain the security and performance of the EPM and NEDEX website. This involves processing visitor IP addresses.

​

People who email us

​

We use Transport Layer Security (TLS) to encrypt and protect email traffic in line with GDPR. Emails may be monitored for viruses or malicious software.

 

People who call us

​

Inbound and outbound calls may be monitored, recorded and automatically transcribed for training, compliance and quality purposes in accordance with UK legislation.

​

People who use EPM services (including NEDEX)

​

EPM offers services in human resources, payroll and pensions. When you subscribe to our services, you will automatically become a NEDEX participant unless you opt out. We may use third parties for marketing campaigns, but they will only use your data to send the agreed communications.

We keep only the data necessary to deliver the service(s) requested and for closely related purposes. You can cancel your subscription or NEDEX participation at any time.

Where personal information is not processed on behalf of a customer, EPM Limited is the data controller (ICO registration Z4871398).

Our online portals record HR, payroll and pensions data on behalf of customers, in which case EPM acts as a Data Processor

​

Your rights

​

You have rights under data protection legislation regarding the personal data we hold about you. You can read more here:
https://ico.org.uk/for-the-public/is-my-informationbeing-handled-correctly/

​​

Complaints or queries

​

We take any complaints about data handling seriously. Please contact us if you have concerns or suggestions.

​

Access to personal information

​

You may request access to your personal information by making a ‘data subject access request’. If EPM is acting as a Data Processor, we will refer your request to the relevant Data Controller.

​

Disclosure of personal information

​

We will not disclose personal data without consent unless legally required or contractually obliged.

​

Legal basis for processing personal information

​

We process personal information on the basis of consent, contract, legitimate interests or legal obligation, as applicable. Automatic NEDEX enrolment is processed under legitimate interests to provide extended services to our participants, with an opt-out available.

​

Changes to this privacy notice

​

We review this notice regularly.

​

How to contact us

​

Email: DPO@epm.co.uk
Post: Data Protection Officer
EPM, St John’s House, Spitfire Close, Ermine Business Park, Huntingdon, PE29 6EP

bottom of page