callcentre@natbankmw.com 626

Data Protection Policy

National Bank of Malawi plc is committed to protecting the privacy and security of personal data in accordance with applicable data protection laws and regulations. This Data Protection Policy outlines how we collect, use, and safeguard your personal information when you use any of our services.

1. Data Collection

The Bank collects the following information:

  • Personal Information: Name, age, date of birth, location, phone number, Identity, and/or email address as per the regulatory requirement.
  • Device Information: Device type, operating system version, subscriber identity (i.e., Internal Mobile Subscriber Identity), and unique device identifiers when you accept our terms and conditions. This only applies when you are using our mobile services.
  • Transparency: Data subjects will be informed of the purposes for which their data is collected and processed, and their rights in relation to their data.
  • Consent: Where consent is required for processing personal data, the Bank will obtain explicit and freely given consent from data subjects. Consent can be withdrawn at any time.

2. Use of Information

The Bank uses the collected data for the following purposes:

  • To provide and improve our services
  • To personalize your experience
  • To communicate with you
  • To analyze app usage and improve our app's performance
  • To prevent fraud

3. Data Sharing

The Bank does not sell, trade, or otherwise transfer your personal information to third parties. However, we may share the information if required by law or regulation.

4. Data Security

The Bank implements reasonable security measures to protect your data from unauthorized access, alteration, disclosure, or destruction.

  • Personal data will be stored securely, and access will be restricted to authorized personnel only. Data will be encrypted, both in transit and at rest where applicable.
  • In the event of a data breach, Nation Bank of Malawi plc will promptly assess and mitigate the impact of the breach, and notify affected data subjects and relevant authorities where required by law.

5. Data Retention

Personal data will be retained for no longer than necessary for the purposes for which it was collected, and in accordance with applicable laws and regulations.

6. Data Subject Rights

Data subjects have the following rights regarding their personal data, in compliance with laws and regulations:

  • Right to Access
  • Right to Rectification
  • Right to Erasure
  • Right to Data Portability
  • Right to Object
  • Right to Restriction of Processing

7. Compliance with Laws

We comply with all relevant data protection laws and regulations applicable in the regions where our service operates.

8. Changes to the Policy

We reserve the right to update this Data Protection Policy. Any changes will be communicated through app updates or on our website.

9. Contact Us

If you have any questions or concerns regarding our Data Protection Policy, please contact us at info@natbankmw.com.

10. Effective Date

This Data Protection Policy is effective from 1st December 2023.