Privacy Policy Purpose
Policy
- Implement human, organisational, and technological security controls to preserve the confidentiality, availability and integrity of its information systems and the information held therein
- Develop and maintain appropriate policies, procedures and guidelines to affect a high standard of information technology security, reflecting industry best practice
- Monitor, record and log all activity on Homecare Medical network and use of its information technology resources
- Comprehensively assess and manage risks to Homecare Medical information systems and the information held there
- Continuously review and improve Homecare Medical information technology security controls, and rapidly determine the cause of any breach of security and minimize damage to information systems should any such incident occur
- Comply with all laws and regulations governing information technology security
- Establish information technology security education and awareness initiatives within Homecare Medical
What information do we collect?
As per Article 25 of Medical device Regulation 2017/745 must be able to identify within the supply chain:
- Anyone who has supplied us a device
- Anyone we have supplied a device
How do we collect information from you?
Visitors to our websites
Client & Customer Information
IP Addresses
Cookies
First Party Cookies
Cookie |
Purpose |
Expires |
ASP.NET_SessionId |
This is the standard ASP.NET cookie containing the user's session ID. |
On exit |
Current Theme |
Current CSS stylesheet name. |
1 day |
CMSPreferredCulture |
The user preferred culture and UI culture. |
1 year |
FormState |
Checks if the form state needs to be restored. |
10 minutes |
fi_cookies_policy_shown |
Used to determine if the user has accepted this Website's Privacy Policy. |
1 year |
jsessionID |
Keeps session ID, required for using any web application. |
End of session |
Username |
Optional, allows browser to remember user name |
30 days |
Password |
Optional , allows browser to remember password |
30 days |
SubscriberID |
Optional , allows browser to remember password |
30 days |
Release_notes |
Prevents release notes from re-displaying once they have been viewed |
1 Year |
Third Party Cookies
Please be
aware that there are cookies which are found in other companies' internet tools
which are used to enhance the website. Homecare Medical use ‘social buttons’ on
the Website, which allow sharing or bookmarking the web pages
Provider |
Name |
Purpose |
More info |
Google Analytics |
|
These
cookies are used to collect information about how visitors use our Website.
We use the information to compile reports and to help us improve the Website.
The cookies collect information in an anonymous form, including the
number of visitors to the Website, where visitors have come to the Website
from and the pages they visited. Expiry depends on the cookie in question. |
By using the Website users are agreeing to the use of cookies as described
above.
Most web browsers allow some control of most cookies through the browser settings. To find out more about cookies, including how to see what cookies have been set and how to manage and delete them, visit www.aboutcookies.org or www.allaboutcookies.org
To opt out of being tracked by Google Analytics across all websites visit http://tools.google.com/dlpage/gaoptout
Compliance with Legislation
Homecare have an obligation to abide by all Irish legislation and relevant legislation of the European Community. The relevant acts, which apply in Irish law to Information Systems Security, include but are not limited to:
- GDPR – General Data Protection Regulation (25th May 2018)
- Article 25 of Medical device Regulation 2017/745
- The Data Protection Act (1988/2002)
- European Communities Data Protection Regulations, (2001)
- European Communities (Data Protection and Privacy in Telecommunications) Regulations (2002)
- Data Protection EU Directive 95/46/EC
- Criminal Damages Act (1991)
- Child Trafficking and Pornography Act (1998)
- Intellectual Property Miscellaneous Provisions Act (1998)
- Copyright and Related Rights Act (2000)
- Health and Safety Act (1989)
- Non-Fatal Offences Against the Person Act (1997)
- Electronic Commerce Act (2000)
- Ecommerce Directive (2000/31/EC)
- Regulations entitled European Communities (Directive 2000/31/EC) Regulations 2003 (S.I. No. 68 of 2003)
The requirement for compliance devolves to all users, who may be held personally responsible for any breach of the legislation. The most relevant legislation is available from Quality Control or the associated website.
Policy Distribution & Awareness
This policy and its supporting policies, are available to all Homecare Medical Supplies via the Shared drive on the Homecare Medical network. Hard copies of the policy and its supporting policies, standards and guidelines will be available on request from the IT Department
The IT Department may make periodic policy announcements by email concerning this and other policies
Homecare Medical line managers will ensure that all existing and new staff, contractors, subcontractors, agency staff and third party commercial service providers who report to them are made aware of and have access to the policy and its supporting policies, standards and guidelines
Individuals requiring clarification on any aspect of the policy and its supporting policies, standards and guidelines and/or advice on general I.T. security matters may email their queries to anyone in the IT Department.
Legal Implications
Any breach of security of an Information System could lead to loss of security of personal information. This would be an infringement of the Data Protection Act 1987 and could lead to civil or criminal proceedings. It is vital, therefore, that users of Homecare Information Systems must comply, not only with this policy, but also with Homecare's Data Protection Guidelines.
Further information is available from www.dataprotection.ie
Review & Update
This policy will be reviewed and updated annually or more frequently if necessary to ensure any changes to Homecare Medical’s organization structure and business practices are properly reflected in the policy.
Queries
If you have any queries or would like to make a Data Subject Access Request or have any other queries please send an email to the following address
dataprotection@homecaremedical.ie