Employee data protection
Find out how Abacus Umantis can help you solve your HR challenges.
Employee data protection concerns the protection of employees' personal data in the workplace. This includes information such as names, addresses, social security numbers, salary data and performance reviews. Employers must respect the privacy and data protection rights of their employees and ensure that all data collected is treated securely and confidentially.
Relevance
It is crucial to ensure employee data protection in order to maintain employee trust and comply with legal requirements. The General Data Protection Regulation (GDPR) regulates the handling of personal data, including employee data, in the European Union. It is important that employers ensure compliance with the principles of the GDPR, such as lawfulness, fairness and transparency in data processing.
Privacy policy
It is important that employers have clear data protection policies and procedures for handling employee data. These include informing employees about the types of data that are collected, the purpose of data collection, retention periods and security measures to protect the data. Employees have the right to be informed about what data is collected about them and how it is used.
Measures for the protection of employee data
To ensure employee data protection, it is advisable for employers to provide training for employees so that they are aware of data protection regulations and best practices. It is also important that all electronic systems and files containing personal data are adequately protected. It is equally important to conduct regular data protection measure reviews to ensure that data continues to be protected.
Our newsletter - always up to HR
Receive the latest HR trends straight to your inbox.
FAQ
Where is your data hosted?
Your Umantis SaaS solution, including your databases, is operated securely in a dedicated data center. NTT Switzerland SA manages the network components, the storage (NetApp storage) and hosts the Umantis server systems in ISO-certified, dedicated data centers. Umantis therefore uses data centers in Switzerland.
How do we guarantee the security of your data?
Umantis HR-Suite Flex takes the security of customer data fully into account. Our backup and at-rest data is encrypted with LUKS1 cipher: aes-xts-plain64 keysize: 256 bits. Daily, weekly and monthly backups are also made. These backups are deleted after specified periods.
For particularly high security requirements, the system with NetApp Storage offers secure deletion of customer data through immediate overwriting and a comprehensive data carrier deletion process.
Which certifications and compliance standards do our data centers meet?
The Umantis server systems are hosted by NTT Switzerland SA in ISO-certified, dedicated data centers.
How is the availability and performance of the HR-Suite ensured?
Our scaled, virtualized servers are monitored automatically around the clock. If parameters are exceeded, alerts are immediately sent to the internal IT operations team. In addition, monthly security updates and patches are carried out beforehand in test environments. Critical patches are implemented within the shortest possible time, guaranteeing "minimal downtime". There has never been a cyber incident since Umantis was founded. Thanks to our multi-secured systems, the few unplanned downtimes have always been in the single-digit minute range.
How do we handle personal data?
The Umantis HR-Suite Flex allows the customer to implement data processing procedures in compliance with current data protection regulations (such as GDPR, Swiss DPA). Data protection is firmly integrated into the processes - both in the context of support and software development. There is also a central point of contact for data protection at datenschutz@umantis.com, which ensures a high level of availability and rapid support for data protection issues.
What data protection regulations apply to the HR-Suite?
The Umantis HR-Suite Flex is based on the current data protection regulations such as the GDPR and the Swiss DPA. Customers can use the SaaS solution in compliance with data protection regulations, which is ensured by structured processes and a comprehensive data protection management system.
How do we support you in complying with the GDPR?
Compliance with the GDPR is actively supported by technical and organizational measures. For example, the principles of privacy by design and by default are already taken into account during system development and the default settings. These data protection measures are firmly anchored in the approval process for the SaaS solution. It is also possible to select data protection-friendly default settings, the configuration of which is described in detail in the free online help.
What measures do we take to control access to sensitive data?
A comprehensive package of measures is implemented to control access to sensitive data. In addition to the obligation of employees to maintain data confidentiality, there are comprehensive regulations and instructions, such as the clean desk policy, regulations for home and mobile offices and the strict classification of information to ensure data security.
FAQ
Where is your data hosted?
Your Umantis SaaS solution, including your databases, is operated securely in a dedicated data center. NTT Switzerland SA manages the network components, the storage (NetApp storage) and hosts the Umantis server systems in ISO-certified, dedicated data centers. Umantis therefore uses data centers in Switzerland.
How do we guarantee the security of your data?
Umantis HR-Suite Flex takes the security of customer data fully into account. Our backup and at-rest data is encrypted with LUKS1 cipher: aes-xts-plain64 keysize: 256 bits. Daily, weekly and monthly backups are also made. These backups are deleted after specified periods.
For particularly high security requirements, the system with NetApp Storage offers secure deletion of customer data through immediate overwriting and a comprehensive data carrier deletion process.
Which certifications and compliance standards do our data centers meet?
The Umantis server systems are hosted by NTT Switzerland SA in ISO-certified, dedicated data centers.
How is the availability and performance of the HR-Suite ensured?
Our scaled, virtualized servers are monitored automatically around the clock. If parameters are exceeded, alerts are immediately sent to the internal IT operations team. In addition, monthly security updates and patches are carried out beforehand in test environments. Critical patches are implemented within the shortest possible time, guaranteeing "minimal downtime". There has never been a cyber incident since Umantis was founded. Thanks to our multi-secured systems, the few unplanned downtimes have always been in the single-digit minute range.
How do we handle personal data?
The Umantis HR-Suite Flex allows the customer to implement data processing procedures in compliance with current data protection regulations (such as GDPR, Swiss DPA). Data protection is firmly integrated into the processes - both in the context of support and software development. There is also a central point of contact for data protection at datenschutz@umantis.com, which ensures a high level of availability and rapid support for data protection issues.
What data protection regulations apply to the HR-Suite?
The Umantis HR-Suite Flex is based on the current data protection regulations such as the GDPR and the Swiss DPA. Customers can use the SaaS solution in compliance with data protection regulations, which is ensured by structured processes and a comprehensive data protection management system.
How do we support you in complying with the GDPR?
Compliance with the GDPR is actively supported by technical and organizational measures. For example, the principles of privacy by design and by default are already taken into account during system development and the default settings. These data protection measures are firmly anchored in the approval process for the SaaS solution. It is also possible to select data protection-friendly default settings, the configuration of which is described in detail in the free online help.
What measures do we take to control access to sensitive data?
A comprehensive package of measures is implemented to control access to sensitive data. In addition to the obligation of employees to maintain data confidentiality, there are comprehensive regulations and instructions, such as the clean desk policy, regulations for home and mobile offices and the strict classification of information to ensure data security.
FAQ
Where is your data hosted?
Your Umantis SaaS solution, including your databases, is operated securely in a dedicated data center. NTT Switzerland SA manages the network components, the storage (NetApp storage) and hosts the Umantis server systems in ISO-certified, dedicated data centers. Umantis therefore uses data centers in Switzerland.
How do we guarantee the security of your data?
Umantis HR-Suite Flex takes the security of customer data fully into account. Our backup and at-rest data is encrypted with LUKS1 cipher: aes-xts-plain64 keysize: 256 bits. Daily, weekly and monthly backups are also made. These backups are deleted after specified periods.
For particularly high security requirements, the system with NetApp Storage offers secure deletion of customer data through immediate overwriting and a comprehensive data carrier deletion process.
Which certifications and compliance standards do our data centers meet?
The Umantis server systems are hosted by NTT Switzerland SA in ISO-certified, dedicated data centers.
How is the availability and performance of the HR-Suite ensured?
Our scaled, virtualized servers are monitored automatically around the clock. If parameters are exceeded, alerts are immediately sent to the internal IT operations team. In addition, monthly security updates and patches are carried out beforehand in test environments. Critical patches are implemented within the shortest possible time, guaranteeing "minimal downtime". There has never been a cyber incident since Umantis was founded. Thanks to our multi-secured systems, the few unplanned downtimes have always been in the single-digit minute range.
How do we handle personal data?
The Umantis HR-Suite Flex allows the customer to implement data processing procedures in compliance with current data protection regulations (such as GDPR, Swiss DPA). Data protection is firmly integrated into the processes - both in the context of support and software development. There is also a central point of contact for data protection at datenschutz@umantis.com, which ensures a high level of availability and rapid support for data protection issues.
What data protection regulations apply to the HR-Suite?
The Umantis HR-Suite Flex is based on the current data protection regulations such as the GDPR and the Swiss DPA. Customers can use the SaaS solution in compliance with data protection regulations, which is ensured by structured processes and a comprehensive data protection management system.
How do we support you in complying with the GDPR?
Compliance with the GDPR is actively supported by technical and organizational measures. For example, the principles of privacy by design and by default are already taken into account during system development and the default settings. These data protection measures are firmly anchored in the approval process for the SaaS solution. It is also possible to select data protection-friendly default settings, the configuration of which is described in detail in the free online help.
What measures do we take to control access to sensitive data?
A comprehensive package of measures is implemented to control access to sensitive data. In addition to the obligation of employees to maintain data confidentiality, there are comprehensive regulations and instructions, such as the clean desk policy, regulations for home and mobile offices and the strict classification of information to ensure data security.
