In every company, the human resources department plays a central role in the day-to-day management of personal data. From recruitment and payroll to annual appraisals, sick leave and training management, HR departments handle a large volume of sensitive information on employees, applicants, service providers and former employees.
GDPR fully applies to human resources
Since the entry into force of the General Data Protection Regulation (GDPR), this data must be subject to rigorous supervision. Why? Because the GDPR considers employees to be data subjects in their own right, in the same way as clients or prospects. Yet, unlike other departments, HR often tends to underestimate the scale of its obligations or overlook certain routine practices, such as Data retention of unsuccessful CVs or overly broad access to personnel files.
A practical guide to meeting your HR challenges
This guide aims to give you a clear and operational vision of GDPR compliance applied to human resources. You'll discover the frequent risks observed during CNIL (National Commission for Information Technology and Civil Liberties)) inspections, the best practices to put in place, and above all the levers for improvement within your reach to strengthen security, transparency and trust within your organization.
Who is this guide for?
Whether you're an HR manager, lawyer, DPO or company director, this guide will help you assess your level of compliance, correct any grey areas, and build a data protection culture in line with the regulatory expectations of 2025.