GDPR HR software

GDPR compliant HR software by Ciphr

Protect your people data with Ciphr's GDPR HR system

Our range of HR, recruitment, onboarding and payroll solutions make it easier for you to comply with the GDPR regulations across every stage of the employee lifecycle. Plus, our off-the-shelf GDPR eLearning content will help you create an ‘information security-aware’ culture, ensuring your people understand their role in securing your organisation’s data.

Ciphr holds the ISO 27001:2013 certification, an internationally recognised best practice framework for an information security management system, as well as the Cyber Essentials Plus certificate of assurance, a government backed scheme that is independently audited – among many other accreditations.

Book your demo of our GDPR compliant HR software now
GDPR list

Why choose Ciphr as your GDPR compliant HR software provider?

  • ISO 27001:2013 – Information Security accredited
  • Cyber Essential Plus accredited
  • Internal security forum regularly reviews our security measures
  • Employees receive regular training on the GDPR and information security
  • Integrated range of HR software, including: recruitment, onboarding, HR, learning and payroll – ensuring easy access to audit trails so you can demonstrate GDPR compliance
  • Easily monitor and manage permissions, including updating expired permissions
  • Comply effortlessly with subject access requests (SARs)
Discover why Ciphr is the right choice to help you with HR GDPR compliance
GDPR wheel

Protect personal data with a GDPR compliant HR system

Ensuring ongoing compliance with regulations such as the GDPR can be tricky for small and medium-sized organisations – particularly those that are growing fast, and are dealing with rising volumes of employees information from myriad sources, including job and pay records, health and wellbeing information, background and right to work checks, and even biometric time and attendance data.

Specialist GDPR compliant HR software such as Ciphr’s makes it easier to achieve and maintain ongoing compliance with the GDPR. Its in-built tools include:

  • A data-retention dashboard, from which you can download data, request extensions to data-retention periods, anonymise records, and delete information when permissions expire
  • The ability to anonymise leavers’ records rather than delete them
  • The option to restrict access to sensitive information, based on users’ profiles
  • Automatic reminders, so you can re-validate consent when needed
  • The ability to define data-retention periods – for 30, 60, 90 days or longer – after which leavers’ records will be marked for anonymisation or deletion
  • Policy distribution and acceptance functionality, so you can ensure your people have read and understood your data protection policy
  • Self-service access for employees, so they can view and update personal information themselves
  • Grant leavers or staff access to their data, helping you fulfil subject access requests (SARs)
Download brochure
Data protection

"Ciphr really is first to market with a lot of its developments; I was a big fan of the GDPR data deletion and monitoring function, for example."

- Certitude

Ensure data security before day one with GDPR compliant HR software for onboarding

The pre-boarding phase – the period between a candidate accepting a new role with your organisation and their first day – is often a risk and a missed opportunity when it comes to adhering to, and reinforcing, good data security practices. With Ciphr’s employee onboarding software, you can:

  • Invite new hires to share personal information (such as bank details) through the secure onboarding portal, which transmits data directly into your chosen, integrated HR system
  • Ask new hires to complete eLearning courses – such as GDPR eLearning courses – before their first day, giving you the confidence that they will be working in a data-aware way from day one
  • Share your GDPR, privacy, and information security policies, so they are aware of their responsibilities when it comes to data protection and how you, as an employer, will handle their personal data
  • You can also tailor the data-collection process so you are collecting only the relevant data, in line with the GDPR’s principle of ‘data minimisation’
Read our ultimate guide to employee onboarding
GDPR onboarding

Hire smarter and faster with GDPR compliant HR software

With most job applications taking place online, and the sheer volume of total applications per role, your organisation must make sure you’re processing applicant data securely and compliantly.

Make your processes GDPR compliant by securely capturing and storing applicants’ personal data using our recruitment software, Ciphr iRecruit. Features include:

  • Data-retention dashboard: you can see when consent expires for individual candidates’ records, and flag the records for anonymisation or deletion in line with your data retention policy
  • Invite hiring managers to review applications within the recruitment software itself; no insecure sharing of CVs via email or chat message
  • Ability to hide personal information from applications, supporting blind recruitment processes
  • Integrating recruitment software with Ciphr’s HR system and employee onboarding software means you can securely transmit the details of successful candidates to other people management systems automatically, reducing the risk of a data security breach
Discover Ciphr’s recruitment software
Recruitment

Trust Ciphr to ensure GDPR payroll compliance

However you wish to run your payroll, Ciphr has a solution that enables you to securely transmit data between your HR system and chosen payroll software.

Our options include:

Ciphr’s ISO 9001 and ISO 27001 certifications give you added peace of mind that your payroll data is secure and our software is GDPR compliant. All payroll documents – such as P60s, P11Ds, and online payslips – can be published to our secure, cloud-based payroll software portal for self-service employee and manager access.

Book your demo of our GDPR compliant HR software and payroll software now
Integration

"Before we introduced Ciphr, every year we sent each employee a copy of their personal data and asked them to check and confirm it. Now they can update information in Ciphr whenever something changes, which is really important for GDPR compliance."

- Cotswold Archeology

Boost GDPR compliance across your organisation with Ciphr’s learning solutions

Whether you need to securely store learners’ digital records, or engage learners with GDPR-related training content, Ciphr’s range of learning solutions are here to help:

  • Our learning management system, Ciphr LMS, securely stores learners’ records
  • Integrated HR and LMS software from Ciphr enables seamless access between the two systems, helping to increase learning uptake and ensuring that data is always transferred securely between the platforms
  • Our subsidiary, Marshall E-Learning, offers a range of information security awareness and GDPR compliance off-the-shelf eLearning courses. Annual information security training helps to create a GDPR-aware culture, and decrease the risk of accidental data breaches
Contact us to discover how our learning solutions can support your GDPR compliance goals
Boost compliance

Streamline offboarding with GDPR compliant HR software

When it’s time for an employee to leave your organisation, several teams will be involved with the offboarding process – from exit interviews to revoking access to company systems and technology. Streamline and standardise this process with Ciphr’s GDPR compliant HR software, which enables you to:

  • Flag leaver records, and set dates for when data needs to be anonymised or deleted, in line with your GDPR data retention policy
  • Use the GDPR compliance dashboard to identify when consent for records expire
  • Provide limited access to employee records, including payslips, P60s and P11Ds, for leavers
  • Automatically notify departments and managers of actions they need to take, and when they need to take them – such as processing final payslips, and removing access to IT systems and buildings
Why you should invest in offboarding software
Colleagues

GDPR compliant HR software FAQ

An organisation’s compliance with the GDPR is a shared responsibility among all departments. Each team (and individual) must ensure that personal data is handled in the correct way; for example, anyone can accidentally send a set of personal data to the wrong email recipient – and this would be considered to be a GDPR breach. HR professionals must ensure that employees’ personal data is collected, stored and processed in line with the GDPR’s requirements at every stage of the employee lifecycle, from hiring and onboarding through to exit and offboarding. But departments, including HR teams, also have wider responsibilities to ensure they are processing customer and employee data in a way that complies with the GDPR’s requirements. HR teams often support IT and information security teams by helping to create a data security-aware culture; this could be, for example, by ensuring that staff complete an annual information security eLearning training course.

No single software solution will guarantee that your organisation will comply with the GDPR. When it comes to GDPR compliant HR software, look for HR systems – such as Ciphr’s – that feature an array of tools and features to help your organisation collect, store and manage employees’ personal data in line with your data security policies and procedures (which should be in line with the GDPR’s requirements). Hallmarks of GDPR compliant HR software, such as Ciphr’s, may include:

  • A data-retention dashboard, from which you can download data, request extensions to data-retention periods, anonymise records, and delete information when permissions expire
  • The ability to anonymise leavers’ records rather than delete them
  • The option to restrict access to sensitive information, based on users’ profiles
  • Automatic reminders, so you can re-validate consent when needed
  • The ability to define data-retention periods – for 30, 60, 90 days or longer – after which leavers’ records will be marked for anonymisation or deletion
  • Policy distribution and acceptance functionality, so you can ensure your people have read and understood your data protection policy
  • Self-service access for employees, so they can view and update personal information themselves
  • Grant leavers or staff access to their data, helping you fulfil subject access requests (SARs)

To ensure your HR software is GDPR compliant, it must demonstrate adherence to the GDPR’s key principles and requirements: namely, that data protection is part of the intrinsic design of the software and your processes (how you use the software). There are many requirements for GDPR compliant HR software – we recommend speaking to a specialist to determine the compliance status of your HR software.

Any software your organisation uses to request/collect, access, store or manage personal data by any individual residing in the EU, or to any partner, supplier or third party inside the EU, must be GDPR compliant. Your HR software, recruitment software, learning management system, and payroll software, are no exceptions.

Disclaimer

We would strongly recommend that you seek your own legal advice if you are unsure about the implications of data protection laws on your business. The information contained on this website is for general guidance purposes only. It should not be taken for, nor is it intended as, legal advice. While we have made every effort to ensure that the information provided on this document is correct and up to date, Ciphr makes no promises as to completeness or accuracy and the information is delivered on an “as is” basis without any warranties, express or implied. Ciphr will not accept any liability for errors or omissions and will not be liable for any damage (including, without limitation, damage for loss of business or loss of profits) arising in contract, tort or otherwise from the use of or reliance on this information, or from any action or decisions taken as a result of using this information.

Microsoft Partner logo. Crown Commercial Service Supplier logo. Information Security Management logo. Prince2 logo. 9001 14001 citation