PROTECTION OF PERSONAL INFORMATION ACT (POPIA) MANUAL

(Prepared in accordance with Section 51 of the Promotion of Access to Information Act, 2 of 2000 ("PAIA"))
Effective Date: 2025


CONTENTS

  1. Introduction
  2. Purpose of the Manual
  3. Company Information
  4. Information Officer
  5. Available Records
  6. Request Procedure (PAIA Access Requests)
  7. Grounds for Refusal
  8. POPIA Compliance Framework
  9. Types of Personal Information Processed
  10. Purpose for Processing Personal Information
  11. Data Subject Rights
  12. Security Measures
  13. Information Sharing & Operators
  14. Cross-Border Transfer of Information
  15. Retention of Records
  16. Direct Marketing
  17. Complaints Procedure
  18. Manual Availability
  19. Appendices (Forms & Fees)

1. INTRODUCTION

The Protection of Personal Information Act, 4 of 2013 (POPIA) governs how private entities process, store, use, and share personal information.
The Promotion of Access to Information Act, 2 of 2000 (PAIA) enables individuals to request access to records held by private bodies, provided the correct procedures are followed.

This POPIA Manual explains how DWD Financial Planners (“the Company”) processes personal information, how data subjects may request access to information, and the measures implemented to ensure compliance with POPIA and PAIA.


2. PURPOSE OF THE MANUAL

This Manual aims to:

  • Provide the structure and process for anyone seeking access to records in terms of PAIA.
  • Describe the categories of information held by DWD Financial Planners.
  • Outline the Company's responsibilities under POPIA.
  • Provide clarity on the rights of clients, employees, service providers and other data subjects.
  • Demonstrate the Company’s commitment to protecting all personal information it processes.

3. COMPANY INFORMATION

Business Name: DWD Financial Planners
Registration Type: Financial Services Provider
FSP Number: 46313
Physical Address: 90 Vleiroos St, Winchester Hills, Johannesburg South, 2091
Phone: 083 783 3369
Email: info@dwdfinancialplanners.co.za
Website: www.dwdfinancialplanners.co.za


4. INFORMATION OFFICER

Information Officer: [Insert Name, e.g., “Denzil Williams” or appointed representative]
Deputy Information Officer: [If applicable]
Email: info@dwdfinancialplanners.co.za
Telephone: 083 783 3369
Postal Address: 90 Vleiroos St, Winchester Hills, Johannesburg South, 2091

Responsibilities include:

  • Ensuring POPIA compliance
  • Responding to PAIA access requests
  • Managing data breaches
  • Maintaining internal POPIA policies
  • Overseeing operator contracts

5. AVAILABLE RECORDS

The following categories of records may be held and accessed in terms of PAIA:

5.1 Internal Company Records

  • Company registration documents
  • FSP license information
  • Employment records
  • Operational policies and procedures
  • Internal manuals

5.2 Client Records

  • Financial planning information
  • FICA documentation
  • Investment and retirement planning details
  • Signed agreements, mandates & application forms
  • Risk profile assessments

5.3 Marketing Records

  • Opt-in databases
  • Communication consent records

5.4 Accounting Records

  • Invoices
  • Payment records
  • Tax documents

Access to any record is not guaranteed and will depend on whether a refusal ground applies.


6. REQUEST PROCEDURE (PAIA ACCESS REQUESTS)

To request access to records:

  1. Complete Form 2 (Request for Access to Record).
  2. Submit the completed form to the Information Officer via email or hand delivery.
  3. Include proof of identity.
  4. Pay the required request fee where applicable.
  5. The Company will respond in writing within 30 days.

Email for Requests: info@dwdfinancialplanners.co.za

The requestor must:

  • State the right they wish to exercise or protect.
  • Explain why the requested record is required.

7. GROUNDS FOR REFUSAL

DWD Financial Planners may refuse access to information where:

  • It includes personal information of third parties
  • It contains confidential financial or proprietary information
  • It includes legally privileged information
  • It poses a risk to security measures
  • It is protected under a confidentiality agreement

All refusals will be supported by written reasons.


8. POPIA COMPLIANCE FRAMEWORK

DWD Financial Planners processes personal information in accordance with POPIA’s eight conditions:

  1. Accountability
  2. Processing Limitation
  3. Purpose Specification
  4. Further Processing Limitation
  5. Information Quality
  6. Openness
  7. Security Safeguards
  8. Data Subject Participation

Internal measures include:

  • Confidentiality agreements
  • Secure digital and physical storage
  • Access control
  • Employee POPIA training
  • Incident & breach response procedures

9. TYPES OF PERSONAL INFORMATION PROCESSED

Clients (Individuals & Employers)

  • Contact details
  • Identity documents
  • Financial information
  • Income & tax information
  • Retirement & investment details
  • Employment details
  • Medical/health information (when required for risk products)

Employees & Job Applicants

  • HR & payroll information
  • Qualifications & background checks

Suppliers & Business Partners

  • Banking details
  • Contractual information

DWD Financial Planners only collects and processes information necessary for legitimate financial services activities.


10. PURPOSE FOR PROCESSING PERSONAL INFORMATION

Information is processed for:

  • Providing financial planning and advisory services
  • Fulfilling FICA, FAIS and SARS regulatory obligations
  • Contractual obligations to clients or employees
  • Investment management and insurance product administration
  • Compliance and risk assessment
  • Direct marketing (client consent required)
  • Reporting to product providers and regulatory bodies

11. DATA SUBJECT RIGHTS

Under POPIA, data subjects have the right to:

  • Access their personal information
  • Request corrections or deletion
  • Object to processing
  • Withdraw consent
  • Lodge complaints
  • Not be subject to automated decision-making
  • Opt out of direct marketing

Requests must be made in writing to the Information Officer.


12. SECURITY MEASURES

DWD Financial Planners employs:

  • Secure cloud-based storage
  • Data encryption
  • Password-protected systems
  • Limited access based on role
  • Physical document security
  • Regular security audits
  • Secure destruction of outdated records

In the case of a data breach, affected parties and the Information Regulator will be notified.


13. INFORMATION SHARING & OPERATORS

Personal information may be shared with:

  • Financial product providers (insurers, investment platforms, retirement fund administrators)
  • Compliance officers
  • IT and cloud service providers
  • Auditors and regulators

All operators are contractually bound to POPIA compliance.


14. CROSS-BORDER TRANSFER OF INFORMATION

Information may be transferred outside South Africa where:

  • A product provider or platform is hosted abroad
  • A third-party system stores data internationally

Transfers occur only where:

  • The receiving country has adequate protection laws, or
  • Contractual protections are in place

15. RETENTION OF RECORDS

Information is retained:

  • 5 years for FAIS/FICA client records
  • 5 years for transactional and financial records
  • As long as required for legal or contractual purposes
  • Until the purpose for collection has been achieved

After retention periods lapse, records are securely destroyed or de-identified.


16. DIRECT MARKETING

DWD Financial Planners follows POPIA’s direct marketing requirements:

  • Consent is required for marketing to non-clients
  • Existing clients may be marketed similar services
  • Opt-out instructions are included in all communications

17. COMPLAINTS PROCEDURE

Complaints may be submitted to:

Information Officer

Email: info@dwdfinancialplanners.co.za

Information Regulator of South Africa

Email: complaints.IR@justice.gov.za
Website: www.inforegulator.org.za


18. MANUAL AVAILABILITY

This POPIA Manual is available:

  • On the Company’s website
  • At the DWD Financial Planners office
  • Upon request via email

19. APPENDICES

Appendix 1 — Form 2: PAIA Request for Access to Record

(We can insert or recreate your uploaded PDF Form 2.)

Appendix 2 — Applicable Fees (PAIA Private Bodies Fee Schedule)

  • Request fee: R140
  • Photocopies: R2.00 per page
  • Flash drive: R40 (if supplied by requester)
  • CD copy: R60
  • Audio transcription: R24 per A4 page
  • Search/preparation fee: R145 per hour (max R435)
  • Postage/email: actual cost