Waterford Institute of Technology banner

   You are at: Data Protection and FOI > Data Protection > Data Protection Rules

Rules of Data Protection

WIT, as a Data Controller, has certain key responsibilities in relation to the information which we keep on computer or in a structured manual file about individuals. These are summarised in terms of eight "Rules" which we must follow, and which are listed below:

  1. Obtain and process the information fairly
  2. Keep it only for one or more specified and lawful purposes
  3. Process it only in ways compatible with the purposes for which it was given to you initially
  4. Keep it safe and secure 
  5. Keep it accurate and up-to-date
  6. Ensure that it is adequate, relevant and not excessive
  7. Retain it no longer than is necessary for the specified purpose or purposes
  8. Give a copy of his/her personal data to any individual, on request

Further information on what type of data is collected by WIT can be found in our Data Protection Policy document

A Guide for Data Controllers

A Guide to your rights