Gold Winner: HR Vendors of the Year 2024 and 2025
Learn More →
Compliance

ISO 27001 Compliance

PeopleCentral's certifications, regulatory compliance, and data protection standards.

Last updated: 1 January 2025

ISO 27001:2022 Certification

PeopleCentral is certified to ISO 27001:2022, the internationally recognised standard for Information Security Management Systems (ISMS). ISO 27001 dictates best practices and comprehensive controls for managing information security risks across people, processes, and IT systems.

The ISO 27001 certification is specifically focused on the PeopleCentral ISMS and measures how our internal processes follow the ISO standard. The services included in the scope for our ISO 27001 certification include: Payroll, Leave, and Appraisal.

Certification means a third-party, accredited, independent auditor has performed an assessment of our processes and controls and confirms they are operating in alignment with the comprehensive ISO 27001:2022 standard.

What Certification Requires Us To Do

Obtain your consent before collecting or processing personal data, unless an exception under the PDPA or applicable law permits otherwise.

Take necessary steps to ensure that any foreign organisation receiving your data is legally bound by enforceable laws that require them to maintain a standard of protection comparable to the PDPA.

Adopt an overarching management process to ensure that the controls meet our information security needs on an ongoing basis — including regular internal audits and management reviews.

PDPA Compliance

In addition to ISO 27001:2022, PeopleCentral maintains full compliance with Singapore's Personal Data Protection Act 2012 (PDPA). Our Data Protection Policy ensures all personal data is collected, used, and disclosed only for legitimate purposes with appropriate consent.

We maintain a registered Data Protection Officer (DPO) who oversees all PDPA compliance activities and serves as the point of contact for data protection queries.

MOM & IRAS Regulatory Compliance

PeopleCentral's payroll, leave, and HR modules are built and continuously updated to comply with Singapore Ministry of Manpower (MOM) regulations and Inland Revenue Authority of Singapore (IRAS) requirements.

This includes CPF contribution calculations, SDL auto-computation, IR8A and IR21 generation, MOM-compliant leave entitlements, and Employment Act adherence. The system is updated automatically whenever regulatory changes are announced.

IMDA PSG Pre-Approved Vendor

PeopleCentral is a pre-approved vendor under the Infocomm Media Development Authority (IMDA) SMEs Go Digital programme's Productivity Solutions Grant (PSG). This designation means the Singapore government has evaluated and endorsed PeopleCentral's HR software as meeting standards suitable for Singapore SME adoption.

Eligible Singapore SMEs can claim up to 50% subsidy on PeopleCentral subscription costs through the PSG.

Data Protection Officer

DPO Officer: Ravinder Pal Singh

DPO Email: ravi@peoplecentral.co

DPO Tel: +65 6837 2336

For general enquiries: business@peoplecentral.co

Questions about this policy?

Contact our Data Protection Officer at dpo@peoplecentral.co or write to us at People Central Pte Ltd, Singapore.