PRIESTLEYSOUNDY – PRIVACY STATEMENT
This Data Protection Privacy Notice (this “Privacy Notice”) explains how PriestleySoundy Law Limited (“PriestleySoundy”, “we”, “us”, “our”) collects, uses, shares and otherwise processes your Personal Data and which rights and options you have in this respect, in accordance with applicable data privacy laws and the General Data Protection Regulation (“GDPR”).
Should you have any questions about this Privacy Notice you can contact us at firstname.lastname@example.org or at the address mentioned below. We may provide supplemental privacy notices on specific occasions when we are collecting or processing Personal Data about you so that you are fully aware of how and why we are using your Personal Data. Those supplemental notices should be read together with this Privacy Notice.
If you would like to learn more about our client confidentiality obligations, please refer to our Terms of Engagement.
The term “Personal Data” as used in this Privacy Notice means any information relating to you such as your name, contact details, bank account details etc. Personal Data does not include data from which you can no longer be identified, such as anonymised aggregated data.
Who is Responsible for your Personal Data?
PriestleySoundy Law Limited is a limited liability company established under English law (Registered No11862164) whose registered office is at Canonbury House, Canonbury Place, London N1 2NQ, United Kingdom.
Which Personal Data do we Collect?
The Personal Data we collect may include:
- Contact information (such as your name, job title, postal address, including your home address, where you have provided this to us, business address, telephone number, mobile phone number, fax number and email address).
- Payment data (such as data necessary for processing payments and fraud prevention, including credit/debit card numbers, security code numbers and other related billing information).
- Further business information necessarily processed in a project or client contractual relationship with PriestleySoundy or voluntarily provided by you (such as instructions given and payments made).
- Your password (if you have one) for any password-protected platforms or services.
- Information collected from publicly available resources, integrity data bases and credit agencies.
- If legally required for compliance purposes, information about relevant and significant litigation or other legal proceedings against you or a third party related to you and interaction with you which may be relevant for antitrust purposes.
- Special categories of Personal Data. In connection with the registration for and provision of access to an event or seminar, we may ask for information about your health for the purpose of identifying and being considerate of any disabilities or special dietary requirements you may have. Any use of such information is based on your consent. If you do not provide any such information about disabilities or special dietary requirements, we will not be able to take any respective precautions.
- Other Personal Data regarding your preferences where it is relevant to legal services that we provide.
- Details of your visits to our premises.
From time to time, it may include Personal Data about your membership of a professional or trade association or union, health Personal Data, details of dietary preferences when relevant to events to which we invite you and details of any criminal record you may have.
How do we Collect your Personal Data?
We may collect Personal Data about you in a number of circumstances, including:
- When you or your organisation seek legal advice from us or use any on-line client services.
- When you or your organisation browse, make an enquiry or otherwise interact on our website.
- When you attend a seminar or another PriestleySoundy event or sign up to receive Personal Data from us, including training.
- When you or your organisation offer to provide or provide services to us.
In some circumstances, we collect Personal Data about you from a third party source. For example, we may collect Personal Data from your organisation, other organisations with whom you have dealings, government agencies, a credit reporting agency, an information or service provider or from a publicly-available record.
Are you Required to provide Personal Data?
As a general principle, you will provide us with your Personal Data entirely voluntarily; there are generally no detrimental effects for you if you choose not to consent or to provide Personal Data. However, there are circumstances in which PriestleySoundy cannot take action without certain of your Personal Data, for example because this Personal Data is required to process your instructions or orders, provide you with access to a web offering or newsletter or to carry out a legally required compliance screening. In these cases, it will unfortunately not be possible for us to provide you with what you request without the relevant Personal Data and we will notify you accordingly.
For which Purposes will we Use your Personal Data?
We may use your Personal Data for the following purposes only (“Permitted Purposes“):
- Providing legal advice or other services or things you may have requested (including on-line or legal technology services or solutions as instructed or requested by you or your organisation).
- Managing and administering your or your organisation’s business relationship with PriestleySoundy (including processing payments, accounting, auditing, billing and collection and support services).
- Compliance with our legal obligations (such as record keeping obligations), compliance screening or recording obligations (e.g. under antitrust laws, export laws, trade sanction and embargo laws, for anti-money laundering, financial and credit check and fraud and crime prevention and detection purposes), which may include automated checks of your contact data or other information you provide about your identity against applicable sanctioned-party lists and contacting you to confirm your identity in case of a potential match or recording interaction with you which may be relevant for compliance purposes.
- To analyse and improve our services and communications to you.
- Protecting the security of and managing access to our premises, IT and communication systems, online platforms, websites and other systems, preventing and detecting security threats, fraud or other criminal or malicious activities.
- For insurance purposes.
- For monitoring and assessing compliance with our policies and standards.
- To identify persons authorised to trade on behalf of our clients, customers, suppliers and/or service providers.
- To comply with our legal and regulatory obligations and requests anywhere in the world, including reporting to and/or being audited by national and international regulatory bodies.
- To comply with court orders and to exercise and/or defend our legal rights.
- For any purpose related and/or ancillary to any of the above or any other purpose for which your Personal Data was provided to us.
Where you have expressly given us your consent, we may process your Personal Data also for the following purposes:
- Communicating with you through the channels you have approved to keep you up to date on the latest legal developments, announcements, and other information about PriestleySoundy services, products and technologies (including client briefings, newsletters and other information) as well as PriestleySoundy events and projects.
- Customer surveys, marketing campaigns, market analysis, sweepstakes, contests or other promotional activities or events.
- Collecting information about your preferences to create a user profile to personalise and foster the quality of our communication and interaction with you (for example, by way of newsletter tracking or website analytics).
We will not use your Personal Data for taking any automated decisions affecting you or creating profiles other than described above.
Depending on for which of the above Permitted Purposes we use your Personal Data, we may process your Personal Data on one or more of the following legal grounds:
- Because processing is necessary for the performance of a client instruction or other contract with you or your organisation.
- To comply with our legal obligations (e.g. to keep pension records or records for tax purposes).
- Because processing is necessary for purposes of our legitimate interest or those of any third party recipients that receive your Personal Data, provided that such interests are not overridden by your interests or fundamental rights and freedoms.
In addition, the processing may be based on your consent where you have expressly given that to us.
With whom will we Share your Personal Data?
We may share your Personal Data in the following circumstances:
- If you are a client of PriestleySoundy, or are contracted to or are an agent of a client of PriestleySoundy, we may disclose your Personal Data to:
- Barristers, other legal specialists (including mediators), consultants or experts engaged in your matter.
- Foreign law firms for the purpose of obtaining foreign legal advice.
- If we have collected your Personal Data in the course of providing legal services to any of our clients, we may disclose it to that client, and where permitted by law to others for the purpose of providing those services.
- We may disclose your contact details on a confidential basis to third parties for the purposes of collecting your feedback on the firm’s service provision, to help us measure our performance and to improve and promote our services.
- We may share your Personal Data with companies providing services for money laundering checks, credit risk reduction and other fraud and crime prevention purposes and companies providing similar services, including financial institutions, credit reference agencies and regulatory bodies with whom such Personal Data is shared.
- We may share your Personal Data with any third party to whom we assign or novate any of our rights or obligations.
- We may share your Personal Data with courts, law enforcement authorities, regulators or attorneys or other parties where it is reasonably necessary for the establishment, exercise or defence of a legal or equitable claim, or for the purposes of a confidential alternative dispute resolution process.
- We may also instruct service providers within or outside of PriestleySoundy, domestically or abroad, e.g. shared service centres, to process Personal Data for the Permitted Purposes on our behalf and in accordance with our instructions only. PriestleySoundy will retain control over and will remain fully responsible for your Personal Data and will use appropriate safeguards as required by applicable law to ensure the integrity and security of your Personal Data when engaging such service providers.
- We may also use aggregated Personal Data and statistics for the purpose of monitoring website usage in order to help us develop our website and our services.
Otherwise, we will only disclose your Personal Data when you direct us or give us permission, when we are required by applicable law or regulations or judicial or official request to do so, or as required to investigate actual or suspected fraudulent or criminal activities.
Personal Data provided to us about Other People
If you provide Personal Data to us about someone else (such as one of your directors or employees, or someone with whom you have business dealings) you must ensure that you are entitled to disclose that Personal Data to us and that, without our taking any further steps, we may collect, use and disclose that Personal Data as described in this Privacy Notice. In particular, you must ensure the individual concerned is aware of the various matters detailed in this Privacy Notice, as those matters relate to that individual, including our identity, how to contact us, our purposes of collection, our Personal Data disclosure practices (including disclosure to overseas recipients), the individual’s right to obtain access to the Personal Data and make complaints about the handling of the Personal Data, and the consequences if the Personal Data is not provided (such as our inability to provide services).
Keeping Personal Data Secure
We will take appropriate technical and organisational measures to keep your Personal Data confidential and secure in accordance with our internal procedures covering the storage, disclosure of and access to Personal Data. Personal Data may be kept on our Personal Data technology systems, those of our contractors or in paper files.
Transferring your Personal Data Abroad
PriestleySoundy is a globally-active law firm.We may transfer your Personal Data abroad if required for the Permitted Purposes as described above. This may include countries which do not provide the same level of protection as the laws of your home country (for example, the laws within the European Economic Area). We will ensure that any such international transfers are made subject to appropriate or suitable safeguards as required by the General Data Protection Regulation (EU) 2016/679 or other relevant laws. You may contact us anytime using the contact details below if you would like further information on such safeguards.
We will require our agents, consultants and sub-contractors and others who are outside the European Economic Area and to whom we transfer your Personal Data to ensure a level of data protection at least as protective as that required in the European Economic Area.
Updating your Personal Data
If any of the Personal Data that you have provided to us changes(for example if you change your email address), if you wish to cancel any request you have made of us or if you become aware we have any inaccurate Personal Data about you, please let us know by sending an email to email@example.com. We will not be responsible for any losses arising from any inaccurate, inauthentic, deficient or incomplete Personal Data that you provide to us.
For How Long do we Retain your Personal Data?
Your Personal Data will be deleted when it is no longer reasonably required for the Permitted Purposes or you withdraw your consent (where applicable) and we are not legally required or otherwise permitted to continue storing such data. We will, in particular, retain your Personal Data where required for PriestleySoundy to assert or defend against legal claims until the end of the relevant retention period or until the claims in question have been settled. We will also keep a small amount of information after file closure to do conflicts of interest searches in the future to comply with our legal and professional duties to avoid a conflict of interest.
Subject to certain legal conditions, you have the right to:
- Request access to your Personal Data (commonly known as a “data subject access request”) and request certain information in relation to its processing.
- Request rectification of your Personal Data.
- Request the erasure of your Personal Data.
- Request the restriction of processing your Personal Data.
- Object to the processing of your Personal Data.
If you wish to do any of the above please send an email to firstname.lastname@example.org. We may request that you prove your identity by providing us with a copy of a valid means of identification in order for us to comply with our security obligations and to prevent unauthorised disclosure of data.
We reserve the right to charge you a reasonable administrative fee for any manifestly unfounded or excessive requests concerning your access to your data, and for any additional copies of the Personal Data you request from us.
We will consider any requests or complaints which we receive and provide you with a response in a timely manner. If you are not satisfied with our response, you may take your complaint at any time to the Information Commissioner’s Office (the “ICO”), the UK supervisory authority for data protection issues, or (as the case may) any other competent supervisory authority of an EU member state.
Updates to this Privacy Notice
This Privacy Notice was last updated in October 2018. We reserve the right to update and change this Privacy Notice from time to time in order to reflect any changes to the way in which we process your Personal Data or changing legal requirements. In case of any such changes, we will post the changed Privacy Notice on our website or publish it otherwise. The changes will take effect as soon as they are posted on this website.
How to Get in Touch with PriestleySoundy
We welcome your views about our website and our Privacy Notice. If you would like to contact us with any queries or comments, please send an email to email@example.com or send a letter to Data Manager, PriestleySoundy Law Limited, Canonbury House, Canonbury Place, London N1 2NQ, United Kingdom.