THE KEY TO YOUR BUSINESS FINANCE

Data Security & Confidentiality

Small-business owner using secure cloud systems for financial records
Practical controls help protect sensitive business and financial information.

Financial records can contain sensitive personal and business information. Real Key Accountancy Limited treats confidentiality as part of our professional responsibility and uses practical controls to reduce unnecessary access, retention and exposure.

Our current safeguards: secure cloud storage, access limited to authorised staff and secure document deletion. We describe only the controls currently used and do not claim that any system can remove every possible security risk.

How we protect information

Secure cloud storage

Client information is stored using secure cloud-based systems selected for business record management. We avoid unnecessary local copies where practical.

Authorised access only

Access is limited to authorised people who need the information for agreed work, administration or professional compliance requirements.

Secure document deletion

Documents and records are securely deleted when they are no longer required, subject to legal, regulatory, professional and engagement-related retention duties.

Our confidentiality approach

  • Information is used for the agreed service and related administration
  • Access is limited according to role and need
  • We avoid requesting information that is not reasonably required
  • Records are retained only where there is a valid business, legal or professional reason
  • Work outside our competence or approved scope is not accepted in-house
  • Queries about information handling can be raised before onboarding

Interactive security guidance

How should I send documents?
Use the document-sharing method agreed during onboarding. Avoid sending sensitive records through unapproved channels. If you are unsure, contact us before sending the information.
Who can access my information?
Access is limited to authorised staff who require the information for the agreed work, administration or compliance responsibilities. Information is not made public through your client relationship with us.
How long are records kept?
Retention depends on the type of record and any applicable legal, regulatory, professional or contractual requirement. Records are securely deleted when they are no longer required.
What should I do if I send information to the wrong place?
Contact us promptly, explain what was sent and how it was transmitted, and do not send further sensitive information until the correct method is confirmed.
Is online storage completely risk-free?
No system can be described as entirely risk-free. We use practical safeguards and limit access, while clients should also protect devices, passwords and any copies they retain.

Your role in protecting information

Please keep your own devices and accounts secure, check recipient details before sending documents, tell us promptly about suspected unauthorised access and avoid sharing more information than is needed for the agreed task.

This page explains our general approach. It should be read with our Privacy Policy, engagement terms and any service-specific instructions provided during onboarding.

Scroll to Top