Privacy Policy
Introduction
This Privacy Policy explains how personal data is collected, used, and protected when you use the Oversight Gap website or engage with related diagnostic and validation services.
Oversight Gap is operated by Cost Management Consultancy Limited, which trades as ERA Group. Cost Management Consultancy Limited is committed to protecting personal data and handling it in accordance with applicable data protection law, including the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Data Controller
For the purpose of data protection law, the data controller is:
Cost Management Consultancy Limited
Registered in England and Wales (14168900)
Contact: leemccready@hotmail.com
Cost Management Consultancy Limited perates the Oversight Gap website and related diagnostic and validation services.
The registered office address is available upon request.
Personal Data We Collect
We collect personal data only where it is necessary to provide diagnostic and validation services, respond to enquiries, or operate this website.
This may include:
- Name
- Business email address
- Telephone number
- Organisation name
- Job title
- Information provided through contact forms
- Information provided through diagnostic assessments
- Communications sent to us
We may also collect limited technical data automatically when you use this website. This may include IP address, browser type, device information, and website usage data.
We do not collect more data than is necessary.
How Personal Data Is Used
Personal data is used to:
- Respond to enquiries and communications
- Deliver diagnostic and validation services
- Provide assessment outputs and related reports
- Maintain communication with organisations that engage with us
- Operate, maintain, and secure this website
- Comply with legal and regulatory obligations
- Personal data is not sold.
- Personal data is not used for unrelated marketing activity.
Legal Basis for Processing
Personal data is processed on the following legal bases:
Legitimate interests
Where processing is necessary to provide diagnostic, validation, and assurance services and to respond to organisational enquiries.
Contractual necessity
Where processing is required to deliver services requested by an organisation.
Legal obligation
Where processing is necessary to comply with legal or regulatory requirements.
Consent
Where consent has been provided for specific processing activities.
Data Protection and Security
Appropriate technical and organisational measures are in place to protect personal data from unauthorised access, loss, misuse, alteration, or disclosure.
Access to personal data is restricted to authorised individuals who require access in order to perform their role.
Personal data is retained only for as long as necessary to fulfil the purposes for which it was collected, or to comply with legal obligations.
Sharing of Personal Data
Personal data is not sold or shared for commercial resale.
Personal data may be shared with trusted service providers where necessary to operate the website or deliver services. These providers are required to protect personal data and process it only as instructed.
Personal data may also be disclosed where required by law or regulatory authority.
International Data Transfers
Where personal data is transferred outside the United Kingdom, appropriate safeguards are implemented to ensure that personal data remains protected in accordance with applicable data protection law.
Your Rights
Under UK data protection law, you have the right to:
- Request access to personal data held about you
- Request correction of inaccurate personal data
- Request erasure of personal data where appropriate
- Request restriction of processing
- Object to processing
- Request transfer of personal data
To exercise these rights, contact:
lmccready@eragroup.com
You also have the right to lodge a complaint with the Information Commissioner’s Office at www.ico.org.uk.
Cookies
This website may use cookies to support its operation and improve functionality and performance.
Cookies are small text files stored on your device. You can control cookie use through your browser settings.
Changes to This Policy
This Privacy Policy may be updated from time to time to reflect operational, legal, or regulatory changes.
The current version will always be available on this website.
Contact
For questions regarding this Privacy Policy or how personal data is handled, contact:
Cost Management Consultancy Limited, Email: leemccready@hotmail.com