What happens when the wrong person sees your survey results?
Survey access control matters because engagement surveys collect candid opinions about named managers, pay, and leadership. HR needs employees to trust who reads their answers. InfoSec needs the fewest people holding sensitive data. Legal needs access limited to what each purpose requires. One loose permission can fail all three reviews at once.
| Reviewer | Core concern | Question they will ask | What satisfies them |
|---|---|---|---|
| CHRO or HR leader | Employees answer honestly | Can a manager work out who wrote a comment? | A written manager access policy tied to team size |
| InfoSec or IT | The fewest people hold sensitive data | Who can export raw comments, and is that recorded? | A role matrix with named export holders |
| Legal or privacy lead | Access limited to purpose | Is survey data open only to people who need it? | Documented scopes and a review cadence |
| Works council or employee representative | Fair use of employee voice | Will results be used to single out individuals? | An agreed report scope with no individual-level access |
| People managers | A useful, fair view of their team | What will I see, and when? | A published timeline and team-size rule |
This page is for information only and is not legal advice. For hosting region, processing agreements, and SSO, see our guide to data residency and GDPR review for employee surveys.

