Form 10 is committed to protecting the privacy and security of your personal information. This notice describes how we collect and use personal information about you during and after your working relationship with us, in accordance with ISO 27001, the Florida Information Protection Act (FIPA), the California Consumer Privacy Act (CCPA), and other applicable state laws.
We collect and process the following categories of "Personally Identifiable Information" (PII):
Identifiers: Name, alias, home address, personal email, Social Security number, driver’s license, or passport number.
Professional/Employment Info: Resume, salary, performance reviews, and training records.
Financial Info: Bank account details for payroll and tax withholding.
Sensitive Information: Health data (for benefits/leave), personal demographic information, if disclosed as part of the voluntary self-identification process.
Digital Monitoring: Information from your use of company-issued devices, including IP addresses, login credentials, and internal communications (Teams/Email) as permitted by state law.
We process your data for the following "Business Purposes":
Contractual Necessity: To pay your salary and administer benefits.
Legal Obligation: To comply with tax laws (IRS), employment eligibility (I-9), and Florida state reporting.
Security & Safety: To protect our information security management system (ISMS), monitor system access, and prevent data breaches (ISO 27001 AND SOC 2 requirements).
Legitimate Interest: To manage performance and ensure company resource security.
We do not "sell" employee personal data. We share your information with:
Service Providers: Payroll processors, 401(k) administrators, and health insurance providers.
Legal Authorities: When required by law or to protect our legal rights.
IT Vendors: Cloud storage and security monitoring tools used for our information security management system (ISMS).
Regardless of your location, we afford all personnel the following rights (aligned with CCPA/CPRA and the Florida Digital Bill of Rights):
Right to Know: You can request a list of the data we hold about you.
Right to Correct: You may update inaccurate personal information.
Right to Delete: You can request deletion of personal data, subject to legal retention requirements (e.g., tax records).
In line with ISO 27001 Annex A 5.34, we implement technical and organizational controls (encryption, MFA, and access logs) to protect your PII. We retain your data only for as long as necessary to fulfill the purposes above or as required by law (typically 7 years post-employment for tax/legal records).
If you have questions about this notice or wish to exercise your rights, please contact the Security Delegate at Security.Delegate@form10.com.
Form 10 Group, Inc. reserves the right to update these Terms at any time. Continued use of the website after changes implies acceptance of the revised Terms.