No. 1 – We are accountable for the personal information in our possession or control.
No. 2 – Decision by Design will explain why we are collecting personal information at or before the time that the information is collected, subject to limited exceptions.
Client Personal Information
In most instances, Decision by Design will collect, use or disclose personal information about clients only for the purpose of providing professional services, to comply with applicable laws, regulations and professional standards, or for the purpose of obtaining technological, administrative, analytical and clerical services or support.
Decision by Design may also collect, use or disclose personal information about clients, prospective clients and alumni for the purpose of sending news and information updates or invitations to events hosted or sponsored by Decision by Design.
Decision by Design may also aggregate personal information with information from other sources for the purpose of improving quality and service, and for use in presentations to clients and non-clients, in a form where such information is sufficiently de-identified so as not to be attributable to any individual or organization.
You can withdraw your consent to the use and disclosure of your personal information for marketing purposes by contacting us at any time.
Decision by Design Partner and Employee Personal Information
Decision by Design collects, uses and discloses personal information about Decision by Design personnel in order to pay them, to comply with laws, regulations and professional standards, to provide them with benefits, to administer performance management tools, to administer, manage, enforce and monitor compliance with Decision by Design programs, policies and employee relations, and generally to establish, manage or terminate the employment or partnership relationship.
Decision by Design may also collect, use or disclose Decision by Design partner and employee personal information to develop business metrics and analytics, and to evaluate the effectiveness of our policies, programs and processes.
We may also collect, use or disclose Decision by Design partner and employee personal information in the course of investigating, negotiating or completing a sale, financing or other business transaction involving all or any part of our business.
We also collect, use and disclose personal information from individuals seeking employment with Decision by Design for the purpose of evaluating their application, to communicate with them regarding employment opportunities that may be of interest, and for the purpose of evaluating or monitoring Decision by Design policies, programs and practices.
At or before the time that Decision by Design collects personal information, we will inform Decision by Design personnel of the reasons why we require such information, what use will be made of it, and with whom it may be shared, except where we are permitted or required by law to collect, use or disclose personal information without providing such notice. For example, collection may occur without notice or consent as permitted by law in the course of an investigation.
No. 3 – Decision by Design will collect, use or disclose personal information about you with your consent except where collection, use or disclosure without consent is permitted or required by law.
How Will We Ask for Consent?
Client Personal Information
The terms and conditions of every Decision by Design professional services engagement are documented in an engagement letter. These terms and conditions include a discussion about how Decision by Design may collect, use and disclose client personal information. By signing the engagement letter, the client is providing its consent to the collection, use and disclosure of personal information described in the terms and conditions. If a client provides us with personal information relating to a third party, by signing the engagement letter the client represents and warrants that they have obtained consent from the third party to allow us to collect, use and disclose their personal information as described in the engagement letter.
Decision by Design Partner and Employee Personal Information
Forms and applications used to provide human resources-related services to Decision by Design personnel will describe the purposes for which their personal information is required and to whom it will be disclosed.
In addition, certain Decision by Design policies or program documents may provide information about how personal information relating to partners and employees may be collected, used and disclosed.
Employment candidates will also be advised of the purposes for which their personal information is being collected, used and disclosed.
What happens if you choose not to give us your consent? What if you withdraw your consent at a later date?
Decision by Design clients always have the option not to provide their consent to the collection, use and disclosure of their personal information, or to withdraw their consent at a later stage, subject to contractual and legal restrictions and reasonable notice. Where a client chooses not to provide us with permission to collect, use or disclose their personal information, we may not be able to provide, or continue to provide, the client with our services.
Where a partner, employee or candidate for employment chooses not to provide us with permission to collect, use or disclose their personal information, we may not be able to employ them, continue to employ them or to provide them with benefits.
No. 4 – Decision by Design limits the amount and type of personal information we collect.
Decision by Design will limit the collection of personal information to that which is reasonably required to provide our services and to operate our business.
In order to protect the personal information in our possession, Decision by Design employs data loss prevention software which is used to monitor access, use and disclosure of confidential and personal information through any device which is connected to the Decision by Design network. The use of data loss prevention software may result in the incidental collection or use of personal information.
No. 5 – Decision by Design will use and disclose your personal information only for the purposes for which we have your consent or as permitted or required by law. We will keep personal information only as long as necessary to accomplish these purposes.
Use and Disclosure of Personal Information
If Decision by Design intends to use or disclose personal information for any purpose not previously identified to an individual, we will obtain their prior consent unless we are permitted or required by law to use or disclose their personal information without consent.
For example, but without limitation, Decision by Design may use and disclose personal information without consent:
- for the purpose of acting in respect of an emergency that threatens the life, health or security of an individual, including steps taken under our pandemic policies;
- to prevent, detect or suppress fraud or financial abuse;
- in connection with an investigation;
- to comply with a subpoena, a warrant or an order made by a court or other body with appropriate jurisdiction or to comply with rules of conduct required by regulatory bodies;
- to a government institution that has requested the information, identified its lawful authority, and has indicated that disclosure is for the purpose of enforcing, administering, carrying out an investigation, or gathering intelligence relating to any federal, provincial or foreign law, or to national security or the conduct of international affairs; and
- to an investigative body or government institution on our initiative when we believe the information concerns a breach of an agreement, or a contravention of a federal, provincial, or foreign law, or we suspect the information relates to national security or the conduct of international affairs.
Retention of Personal Information
In compliance with professional standards, we keep a record of the work performed by Decision by Design personnel. This record, or “working papers”, may include personal information and will be retained until such working papers are no longer reasonably required for legal, administrative, audit, regulatory or professional purposes. Working papers are safeguarded against inappropriate access, as discussed in No. 7 below.
No. 7 – Decision by Design protects your personal information with safeguards appropriate to the sensitivity of the information.
Decision by Design will protect personal information by using physically secure facilities, industry standard security tools and practices, and clearly defined internal policies and practices. Security measures are in place to prevent the loss, misuse and alteration of the personal information under our control. Personal information is stored in secure environments that are not available to the public (e.g., restricted access premises, locked rooms and filing cabinets). To prevent unauthorized electronic access to personal information, any information that is stored in electronic form is protected in a secure electronic and physical environment.
No. 8 – At their request, Decision by Design will advise individuals of what personal information we have in our possession or control about them, what it is being used for, and to whom and why it has been disclosed.
Personal information files are maintained in our offices or on our servers (or those of our service providers) and are accessible by authorized personnel, agents and mandataries who require access in connection with their job responsibilities.
Clients have the right to review and obtain a copy of their personal information on record in our individual offices by contacting their engagement partner.
Decision by Design personnel have the right to review and obtain copies of their personal information on record.
The right to access personal information is subject to certain legal restrictions and we will take reasonable steps to verify an individual’s identity before providing access.
In most instances, individuals will receive a response to their access request within 30 days. If an individual has any concerns about the access that is provided, they are encouraged to contact us at email@example.com or at 1-647-203-9305.
Decision by Design will respond to individual complaints and questions relating to privacy. We will investigate and attempt to resolve all complaints.
We know that protecting the privacy of our clients, partners and employees is important. If you have any questions or concerns about your privacy and our role in protecting it, please contact us at firstname.lastname@example.org or at 1-647-203-9305.