top of page

CRM as a Service Is GDPR Compliant for EMEA Organisations

Updated: Apr 30

CRM as a Service offers EU and EMEA organisations a dedicated version with data stored in secure servers in Germany, keeping all personal data within the European Economic Area and meeting General Data Protection Regulation (GDPR) requirements on data storage, data subject rights, and breach accountability.


EU organisations can use CRM as a Service to manage contact data, track sales opportunities, and run their pipeline with confidence that the platform meets the regulation's requirements on data storage, data subject rights, and breach accountability.



What Personal Data CRM as a Service Processes

CRM as a Service processes the personal data your organisation enters into the platform, including contact names, email addresses, phone numbers, job titles, company affiliations, and records of sales activities such as opportunities, meetings, and notes. Your organisation determines what data is entered and for what purpose. TeamsWork processes this data solely on your instruction, as your data processor.


How CRM as a Service Meets GDPR Requirements

CRM as a Service is built to meet GDPR requirements across data storage, subject rights, and processing accountability. Here is how:


Data stored in Germany

EU customer data is stored in secure servers located in Germany, keeping your organisation's personal data within the European Economic Area and meeting GDPR's data residency requirements.


Documented Subject Access Request process

We operate a documented Subject Access Request (SAR) process that allows data subjects to request access to their personal data. Requests are handled transparently and efficiently, in line with Article 15 of GDPR.


Full data location tracking

We can identify all locations where personal data is stored, including backups, so your organisation can respond accurately to SARs and other data protection obligations.


Data subject rights supported

CRM as a Service supports the full set of data subject rights under GDPR: the right to be informed, the right of access, the right to erasure, the right to restriction of processing, the right to data portability, and the right to object.


Privacy notice published

Our complete privacy notice, including lawful bases for processing, data retention periods, and contact information, is published at the TeamsWork Privacy Notice.


Data Processing Agreement

TeamsWork acts as a data processor, processing personal data on your behalf and under your instruction. Your organisation remains the data controller, responsible for determining the purposes and means of that processing.


A Data Processing Agreement covering processor obligations, data subject rights, incident notification, and audit rights is available for organisations that require formal documentation as part of their compliance programme. To obtain a copy, contact TeamsWork directly.


At TeamsWork, protecting your data and meeting GDPR obligations are built into how CRM as a Service operates. Our SAR process, data location tracking, and published privacy notice are available for your compliance team to review at any time, and we are committed to handling your organisation's personal data with care and in full accordance with the regulation.


TeamsWork is a Microsoft Partner Network member, and their expertise lies in developing Productivity Apps that harness the power of the Microsoft Teams platform and its dynamic ecosystem. Their SaaS products, including CRM as a Service, Ticketing as a Service and Checklist as a Service, are highly acclaimed by users. Users love the user-friendly interface, seamless integration with Microsoft Teams, and affordable pricing plans. They take pride in developing innovative software solutions that enhance company productivity while being affordable for any budget.

Comments


bottom of page