Privacy Notice For Employees Template for Switzerland

Generate a bespoke document

Trusted by 200k+ teams

4.7 Capterra
4.8 Product Hunt
4.6 Trustpilot

What is a Privacy Notice For Employees?

The Privacy Notice For Employees is a mandatory document under Swiss data protection law, particularly following the implementation of the revised Federal Data Protection Act (FADP/DSG). It serves as a crucial transparency tool, informing employees about how their personal data is processed in the employment context. This document is necessary whenever an organization employs staff in Switzerland and processes their personal data. It must be provided to employees at the time of data collection and updated when processing activities change. The notice encompasses all aspects of employee data processing, from recruitment through to post-employment, and must reflect Swiss legal requirements while potentially considering EU GDPR standards where applicable. Recent regulatory changes and increased focus on data protection make this document essential for compliance and risk management.

Reviewed by

Swetha Meenal

Legal Engineer, GenieAI

Swetha Meenal profile photo

A lawyer, legal researcher and legal tech founder, Swetha has built AI products deployed inside Tier 1 firms and enterprises. She ensures GenieAI's alignment with the latest regulation and executes testing on the legal robustness of Genie output.

Reviewed by

Imad Mohammed Nazar

Legal Engineer, GenieAI

Imad Mohammed Nazar profile photo

A Skadden-trained M&A lawyer, Imad advised on cross-border transactions and contractual risk before moving into legal AI. He reviews GenieAI's output for compliance and enforceability across our 150+ supported jurisdictions, as well as facilitating external benchmarking.

Jurisdiction

Switzerland

Publisher

GenieAI

Sector

Business

Cost

Free to use

Last updated

About the Privacy Notice For Employees

A Privacy Notice For Employees is a legal document that transparently communicates to your workforce how their personal data is collected, processed, and protected within your organization. Under Swiss law, you must provide this notice to ensure compliance with data protection regulations and maintain trust with your employees regarding their privacy rights.

When do you need this document?

You need this privacy notice whenever you employ staff in Switzerland and process their personal data. This includes during recruitment when collecting application materials, at the start of employment when gathering onboarding information, and throughout the employment relationship when processing payroll, performance, or health data. The notice must also be provided to temporary workers, contractors, and consultants whose personal data you process. You'll need to update and redistribute the notice whenever you change your data processing activities, implement new HR systems, or modify how employee data is handled.

Key legal considerations

Your privacy notice must clearly identify your organization as the data controller and provide contact details for your data protection officer or responsible person. You need to specify the categories of personal data processed, which may include identification data, contact information, employment history, performance evaluations, and potentially sensitive data like health records. The document must explain your legal basis for processing under Article 6 of the FADP, whether based on contract performance, legitimate interests, or employee consent. You must also detail data retention periods, employee rights including access and correction, and procedures for data subject requests. Cross-border data transfers require specific disclosure about recipient countries and safeguards implemented.

Legal requirements in Switzerland

Swiss Federal Data Protection Act (FADP) requires you to provide clear and comprehensive information about data processing activities at the time of data collection. Article 19 FADP mandates specific information elements including processing purposes, data categories, and recipient details. The Swiss Code of Obligations Article 328b specifically addresses employee data processing, requiring you to process personal data only as necessary for the employment relationship. You must implement appropriate technical and organizational measures under Article 8 FADP to ensure data security. The notice should reference employees' rights under Articles 25-28 FADP, including rights to information, access, rectification, and erasure. If you transfer employee data outside Switzerland, you must comply with Chapter 2 FADP regarding adequate protection levels or implement appropriate safeguards through standard contractual clauses or other approved mechanisms.

GOVERNING LAW

Applicable law

This Privacy Notice For Employees is drafted to comply with Switzerland law. Key legislation includes:

Swiss Federal Data Protection Act (FADP/DSG): The primary Swiss law governing data protection, recently revised to align more closely with EU GDPR standards. It sets out the fundamental principles for processing personal data, including employee data.
Swiss Federal Data Protection Ordinance (FDPO): Implements the detailed provisions of the FADP, providing specific requirements for data processing, security measures, and cross-border transfers.
Swiss Code of Obligations (CO): Contains provisions relevant to employment relationships and the processing of employee data, particularly Article 328b which specifically addresses employee data processing.
Swiss Employment Law (Employment Act): Contains provisions about workplace surveillance and monitoring, which are relevant for employee privacy notices.
EU General Data Protection Regulation (GDPR): While not directly applicable in Switzerland, it's relevant for Swiss companies dealing with EU residents or having EU operations, and influences Swiss data protection practices.
Swiss Criminal Code: Contains provisions regarding the breach of privacy and secrecy obligations, relevant for enforcement of data protection violations.
Federal Act on Electronic Signatures (ZertES): Relevant for electronic processing and storage of employee data and electronic signatures on employment-related documents.
Ordinance on Data Protection Certification (ODPC): Provides standards for voluntary data protection certification, which may be relevant for demonstrating compliance.

Genie's Security Promise

Genie is the safest place to draft. Here's how we prioritise your privacy and security.

Your data is private:

We do not train on your data; Genie's AI improves independently

All data stored on Genie is private to your organisation

Your documents are protected:

Your documents are protected by ultra-secure 256-bit encryption

We are ISO27001 certified, so your data is secure

Organizational security:

You retain IP ownership of your documents and their information

You have full control over your data and who gets to see it