Personal Data Privacy Policy
DIIS Group is committed to respecting the privacy of its contacts and makes every effort to ensure the confidentiality of the personal information provided to it.
This Policy provides information on the conditions under which DIIS Group collects, processes, stores and deletes personal data in accordance with the new General Data Protection Regulation (GDPR) which came into force on 25 May 2018 within the European Union (EU).
Personal data collected
Personal data refers to any information that directly or indirectly identifies a natural person: first and last name, address, email address, telephone number, photograph, date of birth, IP address, CV, etc.
DIIS Group does not collect any unnecessary personal data. The data collected is processed in accordance with this policy and in compliance with legal and contractual obligations.
Personal data may be collected:
- When you contact us
- When you browse, make an enquiry or interact on our website
- When you use DIIS Group‘s services
- When you provide services to DIIS Group
Use of collected personal data
DIIS Group takes privacy very seriously. We do not disclose, share or sell any personal data unless required to do so by law or regulation.
We process the personal data we collect for the following purposes:
- To manage our relationships with our customers, prospects and suppliers
- To manage our relationships with our employees, partners and recruitment candidates
- To provide services to our customers (contracts)
- Develop our activities and service offerings (marketing)
- Respond to requests from administrative and judicial authorities
We retain personal data for the period strictly necessary to fulfil the purposes for which it was collected.
Data Security and Integrity
Our contractual relationships with our customers and banking regulations require us to ensure a high level of security and confidentiality for any personal data we may process.
Procedures covering data protection, confidentiality and security have been defined and implemented within DIIS Group. These measures are regularly reviewed and updated to ensure that the data provided to us is protected appropriately.
DIIS Group takes the necessary technical, physical and organisational measures, in view of the nature of the personal data and the risks involved in processing it, to preserve the security of this data and prevent it from being distorted, damaged, rendered inaccessible or accessed by unauthorised third parties.
DIIS Group regularly raises awareness among its employees about personal data protection and ensures that they comply with the regulations in force and the company’s code of ethics.
DIIS Group selects subcontractors or service providers that offer a high level of assurance regarding the implementation of appropriate technical and organisational measures to ensure that data processing meets the requirements of applicable personal data protection regulations.
If DIIS Group becomes aware of an incident affecting personal data, it shall, in accordance with the framework imposed by the regulations, notify the CNIL as soon as possible after becoming aware of it and inform the persons concerned.
Contact
To contact DIIS Group:
- By email: contact@diisgroup.com
- By post: DIIS Group, 12 Rue Vivienne, 75002 Paris
Rights and complaints
Under the General Data Protection Regulation, you have specific rights, such as the right to access, rectify, object to, restrict, erase and transfer your personal data. For any request relating to your rights, or in the event of a complaint concerning the use of your personal data, please contact contact@diisgroup.com.
You also have the right to lodge a complaint with the competent data protection authority.
Modifications and developments
We ensure that this privacy statement is regularly updated in line with regulatory requirements and developments.