ISO 27001 Compliance
PeopleCentral's certifications, regulatory compliance, and data protection standards.
Last updated: 1 January 2025
ISO 27001:2022 Certification
PeopleCentral is certified to ISO 27001:2022, the internationally recognised standard for Information Security Management Systems (ISMS). ISO 27001 dictates best practices and comprehensive controls for managing information security risks across people, processes, and IT systems.
The ISO 27001 certification is specifically focused on the PeopleCentral ISMS and measures how our internal processes follow the ISO standard. The services included in the scope for our ISO 27001 certification include: Payroll, Leave, and Appraisal.
Certification means a third-party, accredited, independent auditor has performed an assessment of our processes and controls and confirms they are operating in alignment with the comprehensive ISO 27001:2022 standard.
What Certification Requires Us To Do
Obtain your consent before collecting or processing personal data, unless an exception under the PDPA or applicable law permits otherwise.
Take necessary steps to ensure that any foreign organisation receiving your data is legally bound by enforceable laws that require them to maintain a standard of protection comparable to the PDPA.
Adopt an overarching management process to ensure that the controls meet our information security needs on an ongoing basis — including regular internal audits and management reviews.
PDPA Compliance
In addition to ISO 27001:2022, PeopleCentral maintains full compliance with Singapore's Personal Data Protection Act 2012 (PDPA). Our Data Protection Policy ensures all personal data is collected, used, and disclosed only for legitimate purposes with appropriate consent.
We maintain a registered Data Protection Officer (DPO) who oversees all PDPA compliance activities and serves as the point of contact for data protection queries.
MOM & IRAS Regulatory Compliance
PeopleCentral's payroll, leave, and HR modules are built and continuously updated to comply with Singapore Ministry of Manpower (MOM) regulations and Inland Revenue Authority of Singapore (IRAS) requirements.
This includes CPF contribution calculations, SDL auto-computation, IR8A and IR21 generation, MOM-compliant leave entitlements, and Employment Act adherence. The system is updated automatically whenever regulatory changes are announced.
IMDA PSG Pre-Approved Vendor
PeopleCentral is a pre-approved vendor under the Infocomm Media Development Authority (IMDA) SMEs Go Digital programme's Productivity Solutions Grant (PSG). This designation means the Singapore government has evaluated and endorsed PeopleCentral's HR software as meeting standards suitable for Singapore SME adoption.
Eligible Singapore SMEs can claim up to 50% subsidy on PeopleCentral subscription costs through the PSG.
Data Protection Officer
DPO Officer: Ravinder Pal Singh
DPO Email: ravi@peoplecentral.co
DPO Tel: +65 6837 2336
For general enquiries: business@peoplecentral.co
Questions about this policy?
Contact our Data Protection Officer at dpo@peoplecentral.co or write to us at People Central Pte Ltd, Singapore.