Applying GDPR principles to leavers’ inboxes
By Patronum
September 10, 2022
Read Time: 3 mins
By Patronum
September 10, 2022
Read Time: 3 mins
Do you know what the GDPR principles are and how to apply GDPR principles to leavers inboxes? When an employee leaves your organisation what are the first things that come to mind with regards to their Google Workspace account? Maybe it’s security and how to correctly deactivate the account so that it can no longer be accessible, or maybe it’s how you retain or transfer their data so you don’t lose important files or communications. But if you’re business is based in the UK or EU there are also GDPR principles that you need to contend with.
Employees are increasingly becoming concerned by business practices where, for genuine business reasons, a mailbox of an exiting employee remains open after termination. Companies argue that this practice is for entirely legitimate business reasons, such as in relation to sales queries or order processing where another individual in the business can pick up on emails that are being replied to the exiting employee. However recently European DPA’s have refined their position on this practice. Below is a summary of what EU-based organisations should be thinking about when offboarding leavers.
With regards to the email address and mailbox of a former employee or contractor, you need to consider the following:-
These procedures are guidelines, not laws however it’s recommended that organisation try to stay within these guidelines.
Patronum recommends that a GDPR-compliant backup solution, instead of downloading or archiving emails upon exit, is often the best starting point. Correctly configured backup solutions can be used to make sure that only accounts with a legitimate interest are retained.
With Patronum you can configure an offboarding policy that will automatically configure an auto-response, transfer Google Drive files to a Shared Drive, apply a Google Workspace Archive User license, and finally delete the Google Workspace account permanently.
With a Patronum Policy, you can streamline the offboarding process and make sure that everyone is offboarded in a structured and consistent fashion.