Decision details
Data Protection Policy and Records Management Policy
Decision Maker: Cabinet
Decision status: Recommendations Approved
Is Key decision?: No
Is subject to call in?: Yes
Purpose:
To consider policies for approval.
Decision:
Resolved:
1. That the draft Data Protection Policy and Records Management Policy, attached at Appendices 1 and 2 within the report, be approved;
2. That amendments to the records management policy be delegated to the Assistant Director – Governance in consultation with the relevant Portfolio Holder to reflect changes in ICO guidance when issued; and
3. That amendments to the data protection policy be delegated to the Data Protection Officer in consultation with the relevant Portfolio Holder to reflect changes in ICO guidance when issued.
Reasons for the decision:
· Reviewing and adopting revised policies demonstrates the Council’s commitment to transparency, accountability, and the protection of individual rights, which is vital for public trust.
· The impact of the Data Use and Access Act means that the ICO will issue new mandatory guidance to be followed. To reflect this the policies may need to be adapted to accommodate these changes before the policy refresh lifecycle.
Alternative options considered:
Not to recommend or make suggested changes to the policies.
Report author: Richard Steele
Publication date: 25/03/2026
Date of decision: 25/03/2026
Decided at meeting: 25/03/2026 - Cabinet
Effective from: 03/04/2026
Accompanying Documents:
PDF 101 KB