General Data Protection Regulation. Asked Questions

Size: px
Start display at page:

Download "General Data Protection Regulation. Asked Questions"

Transcription

1 General Data Protection Regulation ( GDPR ) Frequently Asked Questions

2 Contents This booklet includes: What is the GDPR? What information does the GDPR apply to? What relevance does the GDPR have in the Isle of Man, Mauritius and Jersey? Does the GDPR only apply to EU organisations? What is a data processor and a data controller? What s new with the GDPR and the new data protection laws in Jersey, Isle of Man and Mauritius? What are the data protection principles? Does Standard Bank always need consent to process my personal data? What are Standard Bank doing to prepare? Where do I find information on what you do with my personal data? 2

3 What is the GDPR? The General Data Protection Regulation is a new European law that replaces existing data protection legislation in the countries of the European Union ( EU ). It places greater obligations on how organisations handle personal data. It comes into full force and effect on 25 May What information does the GDPR apply to? The GDPR applies to personal data which means any information relating to an identified or identifiable natural (that is, human) person. An identifiable person is someone who can be directly or indirectly identified, in particular by reference to an identifier such as a name, identification number, location data, an online identifier (for example, ISP addresses, cookie identifiers, radio frequency IDs) or one or more factors specific to their physical, mental, physiological, genetic, economic, cultural or social identity. It applies to the personal data of persons in the EU wheresoever that personal data is processed. 3

4 What relevance does the GDPR have in the Isle of Man, Mauritius and Jersey? The Isle of Man and Jersey, which are not part of the EU, presently have EU Adequacy Rulings from a data protection perspective. This means that the EU recognises that the Isle of Man and Jersey have data protection legislation that provides effectively equivalent rights and safeguards to the protection of personal data as do their European neighbours. There are a dozen or so such territories/countries in the World with EU Adequacy Rulings. The Isle of Man s existing data protection legislation is the Data Protection Act It is due to be replaced in 2018 with a new Data Protection Act 2018 which is designed to usher in equivalent provisions to the GDPR for the Isle of Man. Jersey s existing data protection legislation is the Data Protection (Jersey) Law It is due to be replaced in 2018 with a new Data Protection (Jersey) Law 2018 and a new Data Protection Authority (Jersey) Law 2018 which are also designed to usher in equivalent provisions to the GDPR for Jersey. Mauritius (not part of the European Union) does not presently have an EU Adequacy Ruling but replaced its Data Protection Act 2004 with a new Data Protection Act 2017, and this is also designed to usher in various provisions from the GDPR for Mauritius. Isle of Man Jersey Mauritius 4

5 Does the GDPR only apply to EU organisations? The GDPR applies to processing of personal data carried out by organisations operating within the EU. GDPR also applies to organisations outside the EU that offer goods or services to individuals in the EU or monitor the activities of persons in the EU. The new laws in Jersey, Isle of Man and Mauritius will apply to processing of personal data carried out by organisations operating in those jurisdictions including Standard Bank Offshore Group companies that are located there. The GDPR and the new laws differentiate between those processing personal data as data controllers of that personal data and those processing personal data as data processors on behalf of another data controller. What is a data processor and a data controller? A data controller determines the purposes and means (why and how) of processing personal data. A data processor is responsible for processing personal data on behalf of a data controller. Because of our structure then in most cases Standard Bank Offshore Group companies will be both data controllers of personal data and data processors of personal data on behalf of other Standard Bank Group companies. 5

6 What s new with the GDPR and the new data protection laws in Jersey, Isle of Man and Mauritius? Amongst other things the new laws require compliance with certain data protection principles and primarily usher in: Increased and new rights for individuals in respect to their personal data including access rights, data portability, right to erase, right to object to processing, right to restrict processing, rights in relation to automated decision making and profiling. For further information on these please refer to our separate Your Data Your Rights booklet); Greater requirements around transparency (informing people what you do with their data) and accountability; Greater requirements around consent to processing (when this is required); Greater record keeping requirements in respect to processing activities; Mandatory breach reporting requirements within 72 hours, subject to very limited exceptions; The mandatory appointment of a Data Protection Officer and an EU Representative in certain circumstances; Greater fines and penalties that can be imposed by data protection supervisory authorities; and The concept of data protection by design and by default and the mandatory requirement for data protection impact assessments to be carried out in certain circumstances. 6

7 What are the data protection principles? The new laws, like the existing laws, remain principles based. The following are the broad principles that the new laws state must be adhered to: 7

8 Does Standard Bank always need consent to process my personal data? In short, no. Consent is one lawful basis for processing personal data, but there are five others, and additional ones in respect to the processing of sensitive/special category personal data (for example, health information). It is Standard Bank s responsibility to ensure it has identified and meets one or more lawful bases for processing personal data under the new laws. How are Standard Bank preparing? Standard Bank Offshore Group has a GDPR Project team which is helping the business deliver the changes required to ensure compliance with the GDPR and the new legislation applicable in the Isle of Man, Jersey and Mauritius. Where do I find information on what you do with my personal data? When a Standard Bank company handles your personal data we are obliged to provide you with certain information in respect to our handling of that data. 8 This information, in respect to Standard Bank companies which form part of the Standard Bank Offshore Group of companies which includes Standard Bank Isle of Man Limited, Standard Bank Jersey Limited, Standard Bank International Investments Limited, Standard Bank Offshore Trust Company Jersey Limited and Standard Bank Offshore Trust Company (Mauritius) Limited, is contained in our client privacy notice which can be found at com/pbbinternational/aboutus/footer/privacy-statement.

9 The information contained within that client privacy notice will help you to identify, amongst other things: Who the Standard Bank data controller(s) of your personal data is/are; Who the Data Protection Officer(s) is/are and how to contact them; Why we process your personal data and the lawful basis upon which we rely to process it; Who we share it with and if they are in countries considered higher risk from a data protection perspective; What measures we take to protect your personal data when we do share it; Information relating to how long we hold on to your personal data; and Information regarding your rights in respect to that personal data. Disclaimer Whilst every care has been taken in preparing this booklet, no member of the Standard Bank Group gives any representation, warranty or undertaking and accepts no responsibility or liability as to the accuracy, or completeness, of the information. The information contained does not purport to be complete and is subject to change. For the avoidance of doubt, our duties and responsibilities do not include legal, or other specialist or technical advice or services. You are to rely on your independent appraisal of and investigations into the information provided, and we advise you received specialist legal advice if you have any concerns regarding your data protection rights. 9

10 Standard Bank Jersey Limited, Standard Bank Offshore Trust Company Jersey Limited and Standard Bank International Investments Limited are regulated by the Jersey Financial Services Commission. They are registered in Jersey as Company numbers 12999, 9153 and respectively. Their business address is Standard Bank House, La Motte Street, St Helier, Jersey, JE2 4SZ. Standard Bank Isle of Man Limited is licensed by the Isle of Man Financial Services Authority. Standard Bank House, One Circular Road, Douglas, Isle of Man, IM1 1SB. Registered in the Isle of Man No. 4713C. Standard Bank Trust Company (Mauritius) Limited is regulated by the Financial Services Commission, Mauritius, to provide corporate and trust services and does not fall under the regulatory and supervisory purview of the Bank of Mauritius. Business registration number: C Level 10, Tower A, 1 Cyber City, Ebene, Mauritius. The above entities are wholly owned subsidiaries of Standard Bank Offshore Group Limited whose registered office is Standard Bank House, La Motte Street, St. Helier, Jersey, JE2 4SZ. GMS /18

Your Data Your Rights

Your Data Your Rights Your Data Your Rights Introduction Here at Standard Bank we take your privacy seriously. When you provide us with information from which you can be identified or which renders you identifiable (your personal

More information

The GDPR how to prepare MiFID II where are we now? Wednesday 21 February 2018

The GDPR how to prepare MiFID II where are we now? Wednesday 21 February 2018 The GDPR how to prepare MiFID II where are we now? Wednesday 21 February 2018 GDPR so far The EU General Data Protection Regulation (Regulation (EU) 2016/679) comes into effect on 25 May 2018 Aims to protect:

More information

Privacy Statement v 1.1

Privacy Statement v 1.1 Privacy Statement v 1.1 Context and Overview This notice will take effect from 25/05/2018 Burke Insurances Ltd. is committed to protecting and respecting your privacy. It is the intention of this privacy

More information

Member Circular March Implementation of the EU General Data Protection Regulation 2016/679 General Guidance to Members

Member Circular March Implementation of the EU General Data Protection Regulation 2016/679 General Guidance to Members Member Circular March 2018 Implementation of the EU General Data Protection Regulation 2016/679 General Guidance to Members Introduction Regulation (EU) 2016/679 containing the General Data Protection

More information

Your Right Hand Finance Ltd (YRH) Subject Request Policy

Your Right Hand Finance Ltd (YRH) Subject Request Policy Your Right Hand Finance Ltd (YRH) Subject Request Policy CONTENTS 1 Purpose... 2 2 Scope... 2 3 Policy Statement... 2 4 Procedure... 2 4.1 How should SRFs be processed after receiving... 2 4.2 Fees...

More information

Privacy Policy Statement

Privacy Policy Statement Privacy Policy Statement QuoteDevil is committed to protecting and respecting your privacy. It is the intention of this privacy policy statement to explain to you the information practices of QuoteDevil

More information

GROUP PRIVACY POLICY. Adopted June 20th, 2017 by each of the Boards of Carnegie Holding AB and Carnegie Investment Bank AB (publ).

GROUP PRIVACY POLICY. Adopted June 20th, 2017 by each of the Boards of Carnegie Holding AB and Carnegie Investment Bank AB (publ). GROUP PRIVACY POLICY Adopted June 20th, 2017 by each of the Boards of Carnegie Holding AB and Carnegie Investment Bank AB (publ). 1 PURPOSE AND SCOPE 1.1 The aim of this policy is to establish uniform,

More information

DATA SUBJECT ACCESS REQUEST POLICY AND PROCEDURE

DATA SUBJECT ACCESS REQUEST POLICY AND PROCEDURE DATA SUBJECT ACCESS REQUEST POLICY AND PROCEDURE CONTENTS 1. PURPOSE.... SCOPE.... POLICY STATEMENT... 4. PROCEDURE... How should DSARs be processed after receiving... Fees... Subject access requests made

More information

Creating a Big Data Strategy: Managing Risk and Enabling Innovation

Creating a Big Data Strategy: Managing Risk and Enabling Innovation Creating a Big Data Strategy: Managing Risk and Enabling Innovation Meghan Farmer and Brooke McGuffey 2016 Kilpatrick Townsend What is Big Data? Traditional definition: high-volume, high-velocity and/

More information

PERSONAL DATA PROCESSOR AGREEMENT

PERSONAL DATA PROCESSOR AGREEMENT 1 PERSONAL DATA PROCESSOR AGREEMENT PARTIES This personal data processor agreement ( Processor Agreement ) has been entered into between: Buyer/Client/Customer ( Controller ), and The company within the

More information

Appropriate Policy Document

Appropriate Policy Document Appropriate Policy Document Schedule 1, Part 4, Data Protection Act 2018 July 2018 Privacy Notice - Appropriate Policy Document v2.docx Page 1 of 8 Contents 1 Introduction... 3 2 Relevant Schedule 1 conditions

More information

DEAL BY SEA LTD PRIVACY NOTICE

DEAL BY SEA LTD PRIVACY NOTICE DEAL BY SEA LTD PRIVACY NOTICE 1. Scope All data subjects whose personal data is collected, in line with the requirements of the GDPR. 2. Responsibilities 2.1. The Data Protection Officer is responsible

More information

Data Processing Appendix

Data Processing Appendix Data Processing Appendix This Data Processing Appendix (the Appendix ) is attached to and forms part of the Supplier General Terms and Conditions (the Agreement ) between Nebula Oy ( Supplier ) and customer

More information

WHAT DOES THE GDPR MEAN FOR PENSIONS? HANDY GUIDE

WHAT DOES THE GDPR MEAN FOR PENSIONS? HANDY GUIDE WHAT DOES THE GDPR MEAN FOR PENSIONS? HANDY GUIDE The General Data Protection Regulation How will the pensions industry be affected? The pensions industry processes huge amounts of personal data - member's

More information

WHAT DOES THE GDPR MEAN FOR PENSIONS?

WHAT DOES THE GDPR MEAN FOR PENSIONS? WHAT DOES THE GDPR MEAN FOR PENSIONS? The General Data Protection Regualtion How will the pensions industry be affected? The pensions industry processes huge amounts of personal data - member's names,

More information

GDPR : We protect your data

GDPR : We protect your data GDPR : We protect your data Dear customer, From the 25th May 2018 the new law of Personal Data Protection (GDPR) will enter into force. At Almagest Wealth Management S.A., we understand your need to be

More information

DATA PRIVACY & FAIR PROCESSING NOTICE

DATA PRIVACY & FAIR PROCESSING NOTICE Scope All data subjects whose data is processed by TC Debt Solutions, which is part of Thomson Cooper Accountants. Responsibilities Thomson Cooper Partner Mark Mitchell (mmitchell@thomsoncooper.com) is

More information

CLIENT DATA PROCESSING AGREEMENT

CLIENT DATA PROCESSING AGREEMENT CLIENT DATA PROCESSING AGREEMENT This Data Processing Agreement for the Data Protection (the Agreement ) of Data Processed is entered into on./../ (hereinafter referred to as the Effective Date ) by and

More information

Pension Trustees. Final Countdown to the GDPR

Pension Trustees. Final Countdown to the GDPR Pension Trustees Final Countdown to the GDPR Introduction The General Data Protection Regulation (GDPR) will come into force in all EU Member States in May 2018. It is not a radical departure from the

More information

GDPR FOR PRIVATE EQUITY AND REAL ESTATE

GDPR FOR PRIVATE EQUITY AND REAL ESTATE GDPR FOR PRIVATE EQUITY AND REAL ESTATE Date: Friday, 3rd November 2017 Start time: 12:30GMT Panellists: Pat McIntyre GDPR Project Manager David Rowland Group Head of AML and Compliance Manager, Augentius

More information

Privacy Policy and Personal Data

Privacy Policy and Personal Data ERGO Insurance SE Lithuanian Branch Privacy Policy and Personal Data ERGO Insurance SE Lithuanian Branch and ERGO Life Insurance SE (hereinafter referred to as ERGO or we ) understand that personal data

More information

MRS Brexit Survival Guide: EU-UK Data transfers November

MRS Brexit Survival Guide: EU-UK Data transfers November 2018 MRS. All rights reserved. November 2018 No part of this publication may be reproduced or copied in any form or by any means, or translated, without the prior permission in writing of MRS. MRS Brexit

More information

Big Web Warehouse Ltd GDPR Data Processor Policy Warehouse and Fulfilment April 2018

Big Web Warehouse Ltd GDPR Data Processor Policy Warehouse and Fulfilment April 2018 Big Web Warehouse Ltd GDPR Data Processor Policy Warehouse and Fulfilment April 2018 1. Introduction This Policy sets out the obligations of, Big Web Warehouse Ltd (BWW), a company registered in the United

More information

H. KEMP & SON LTD. FUNERAL DIRECTORS (ESTABLISHED 1893) Privacy Policy

H. KEMP & SON LTD. FUNERAL DIRECTORS (ESTABLISHED 1893) Privacy Policy 1. Scope All data subjects whose personal data is collected, in line with the requirements of the General Data Protection Regulation. 2. Responsibilities 2.1 H Kemp and Son limited is responsible for ensuring

More information

DATA PROCESSING ANNEX

DATA PROCESSING ANNEX Page 1 (5) 1 BACKGROUND AND PURPOSE DATA PROCESSING ANNEX 1.1 The terms of this Annex shall apply to the Agreement between Solibri Oy and/or its Subsidiary/Subsidiaries (Solibri Oy and the Subsidiaries

More information

Revising policies and procedures under the new EU GDPR

Revising policies and procedures under the new EU GDPR Revising policies and procedures under the new EU GDPR Richard Campo, CISM GRC Consultant IT Governance Ltd 1 Sept 2016 www.itgovernance.co.uk TM Introduction Richard Campo GRC consultant Data protection

More information

All Sorts UK Limited Data Protection Policy 17 th May 2018

All Sorts UK Limited Data Protection Policy 17 th May 2018 All Sorts UK Limited Data Protection Policy 17 th May 2018 1. Introduction This Policy sets out the obligations of All Sorts UK Limited, a company registered in England under number 03534972, whose registered

More information

The New EU General Data Protection Regulation (GDPR)

The New EU General Data Protection Regulation (GDPR) The New EU General Data Protection Regulation (GDPR) The clock has started on the biggest change to the European data protection regime in 20 years. After four years of negotiation, the new EU General

More information

European Union General Data Protection Regulation

European Union General Data Protection Regulation European Union General Data Protection Regulation Policy 25 May 2018 Bendigo and Adelaide Bank Limited ABN 11 068 049 178 General Data Protection Regulation (GDPR) Application This GDPR section of our

More information

The contract is important so that both parties understand their responsibilities and liabilities.

The contract is important so that both parties understand their responsibilities and liabilities. Contracts At a glance Whenever a controller uses a processor it needs to have a written contract in place. The contract is important so that both parties understand their responsibilities and liabilities.

More information

Guidance: The new EU General Data Protection Regulation: Implications for Australia

Guidance: The new EU General Data Protection Regulation: Implications for Australia Guidance: The new EU General Data Protection Regulation: Implications for Australia Introduction After years of negotiations, the new EU General Data Protection Regulation (GDPR) was passed in 2016, bringing

More information

Newsletter NEW DATA PROTECTION REGIMES IN THE EU AND JAPAN: Similarities and Differences. Atsumi & Sakai

Newsletter NEW DATA PROTECTION REGIMES IN THE EU AND JAPAN: Similarities and Differences. Atsumi & Sakai Newsletter Atsumi & Sakai NEW DATA PROTECTION REGIMES IN THE EU AND JAPAN: Similarities and Differences ATSUMI & SAKAI TOKYO LONDON FRANKFURT www.aplaw.jp/en NEW DATA PROTECTION REGIMES IN THE EU AND JAPAN:

More information

CPI PROPERTY GROUP. Group Data Protection Policy. 25 May Summary

CPI PROPERTY GROUP. Group Data Protection Policy. 25 May Summary CPI PROPERTY GROUP Group Data Protection Policy Summary This Group Data Protection Policy ( Data Protection Policy ) stipulates the rules for personal data protection in the CPI PROPERTY GROUP ( CPIPG

More information

GDPR CCPA LGPD. Protected information

GDPR CCPA LGPD. Protected information Stricter data protection laws are on the rise. While only a couple of years ago, data protection legislations and requirements were frequently marginalized and the position of the data protection officer

More information

DATA PROCESSING TERMS AND CONDITIONS

DATA PROCESSING TERMS AND CONDITIONS DATA PROCESSING TERMS AND CONDITIONS These Data Processing Terms and Conditions apply in respect of Personal Data that we process on behalf of Customers who purchase the Powwownow Premium Service. Please

More information

Information about Danica Pension s processing of personal data

Information about Danica Pension s processing of personal data Information about Danica Pension s processing of personal data Danica Pension is a financial institution that offers pensions and insurance to its customers. When you become a Danica Pension customer,

More information

The GDPR Possible Impact on the Life Sciences and Healthcare Sectors

The GDPR Possible Impact on the Life Sciences and Healthcare Sectors February 14, 2017 The GDPR Possible Impact on the Life Sciences and Healthcare Sectors Regulation (EU) 2016/679 of the European Parliament and the Council of 27 April 2016, (the GDPR ) came into force

More information

Mobius Life Limited Data Privacy Notice

Mobius Life Limited Data Privacy Notice Mobius Life Limited Data Privacy Notice Introduction This data privacy notice confirms how Mobius Life Limited (referred to hereafter as our, us, we or MLL ) obtains, manages, uses, retains and destroys

More information

THE IRON MOUNTAIN GDPR JARGON BUSTER

THE IRON MOUNTAIN GDPR JARGON BUSTER THE IRON MOUNTAIN GDPR JARGON BUSTER DON T KNOW YOUR BCRS FROM YOUR DPOS? IF SO, YOU RE NOT ALONE. The new EU General Data Protection Regulation (GDPR for short, and yet another set of initials you ll

More information

DATA PROCESSING ADDENDUM

DATA PROCESSING ADDENDUM This Data Processing Addendum (the DPA ) forms part of Telia Bedriftsavtale or other written or electronic agreement between the Parties for the purchase of telecommunication services, and regulates any

More information

Pension Trustees Final Countdown To GDPR

Pension Trustees Final Countdown To GDPR Pension Trustees Final Countdown To GDPR " ROBERT HANIVER SENIOR ASSOCIATE/TECHNOLOGY MASON HAYES & CURRAN " STEPHEN GILLICK PARTNER/PENSIONS MASON HAYES & CURRAN The General Data Protection Regulation

More information

Trust Client Client Due Diligence. ABN AMRO Bank N.V., Jersey Branch

Trust Client Client Due Diligence. ABN AMRO Bank N.V., Jersey Branch Trust Client Client Due Diligence ABN AMRO Bank N.V., Jersey Branch 1/15 Section 1 Trust Information Client Name Name of Trust 1 Account Name 2 Trust Jurisdiction Date Trust established D D M M Y Y Y Y

More information

Michael R. Cohen CIPP/US, CIPP/E Gray Plant Mooty. Overview of the EU General Data Protection Regulation (GDPR)

Michael R. Cohen CIPP/US, CIPP/E Gray Plant Mooty. Overview of the EU General Data Protection Regulation (GDPR) Michael R. Cohen CIPP/US, CIPP/E Gray Plant Mooty Overview of the EU General Data Protection Regulation (GDPR) WHAT YOU NEED TO KNOW ABOUT THE EU GENERAL DATA PROTECTION REGULATION (GDPR) What is the GDPR?

More information

Banks Sheridan Limited Data Protection Privacy Policy 19 May 2018

Banks Sheridan Limited Data Protection Privacy Policy 19 May 2018 Banks Sheridan Limited Data Protection Privacy Policy 19 May 2018 1. Introduction This Policy sets out the obligations of Banks Sheridan Limited ( the Company ) regarding data protection and the rights

More information

LAMP Services Limited Privacy Notice v1.2 4 th March Controller

LAMP Services Limited Privacy Notice v1.2 4 th March Controller 1. Controller LAMP Services Limited is the Controller under the EU General Data Protection Regulation (EU GDPR). LAMP Services Limited is incorporated in England, company registration number 04967967.

More information

International data transfers and Schrems White & Case. Aqeel Kadri and Tim Hickman

International data transfers and Schrems White & Case. Aqeel Kadri and Tim Hickman International data transfers and Schrems White & Case Aqeel Kadri and Tim Hickman 9 March 2016 Overview of EU data protection law Currently, each EU Member State has its own national data protection law,

More information

General Terms and Conditions for Personal Accounts Standard Bank Isle of Man Limited

General Terms and Conditions for Personal Accounts Standard Bank Isle of Man Limited General Terms and Conditions for Personal Accounts Standard Bank Isle of Man Limited 1. Introduction 1.1 These Terms set out the terms and conditions upon which we, the Bank, will provide banking services

More information

GDPR DATA PROCESSING ADDENDUM INSTRUCTIONS FOR JOSTLE CUSTOMERS

GDPR DATA PROCESSING ADDENDUM INSTRUCTIONS FOR JOSTLE CUSTOMERS GDPR DATA PROCESSING ADDENDUM INSTRUCTIONS FOR JOSTLE CUSTOMERS WHO SHOULD EXECUTE THIS DPA: If you have determined that you qualify as a data controller under the GDPR, and need a data processing addendum

More information

Trust and Fiduciary Terms and Conditions

Trust and Fiduciary Terms and Conditions Private Clients January 2015 Trust and Fiduciary Terms and Conditions Standard Bank Offshore Trust Company Jersey Limited and Standard Bank Trust Company (Mauritius) Limited Changes to the standard Terms

More information

Visa Debit Card User Guide

Visa Debit Card User Guide Visa Debit Card User Guide Visa Debit Card User Guide Introducing the card This user guide explains how our Visa debit card service works in conjunction with your account. You are welcome to contact your

More information

We protect your data and privacy by taking all relevant measures in accordance with applicable legislation.

We protect your data and privacy by taking all relevant measures in accordance with applicable legislation. Privacy notice Nordania Finans A/S (Danske Leasing A/S), which is part of Danske Bank Group, and Nordania Leasing, division af Danske Bank A/S (in the following collectively referred to as Nordania ) are

More information

We are the Sanne Group, a listed multinational provider of alternative asset and administration services.

We are the Sanne Group, a listed multinational provider of alternative asset and administration services. PRIVACY NOTICE Introduction - Who Are We? We are the Sanne Group, a listed multinational provider of alternative asset and administration services. In this policy, "Sanne", "we", "our" or "us" may refer

More information

CHARITY & NFP LAW BULLETIN NO. 419

CHARITY & NFP LAW BULLETIN NO. 419 CHARITY & NFP LAW BULLETIN NO. 419 APRIL 25, 2018 EDITOR: TERRANCE S. CARTER IMPLICATIONS OF THE EU S GENERAL DATA PROTECTION REGULATION IN CANADA By Esther Shainblum & Sepal Bonni * A. INTRODUCTION The

More information

Standard Bank Jersey Limited Summary Financial Statements 2016

Standard Bank Jersey Limited Summary Financial Statements 2016 Standard Bank Jersey Limited Summary Financial Statements 2016 Contents Page Officers of 2 Financial Review 3 Summary Financial Statements 4 Contacts 5 / 1 Officers of the Company Directors C A Broadley

More information

Privacy Policy. This privacy policy shall be valid even if you have reserved your transfers through the other sales partners of Plus Group Kft.

Privacy Policy. This privacy policy shall be valid even if you have reserved your transfers through the other sales partners of Plus Group Kft. Privacy Policy Plus Group Kft. (1033 Budapest, Polgár utca 8-10., www.plusairsolutions.com, informationsecurity@plusairsolutions.com, tax number: 22976309-2-41, hereinafter: Plus Group Kft., service provider

More information

CLOUDINARY DATA PROCESSING ADDENDUM

CLOUDINARY DATA PROCESSING ADDENDUM CLOUDINARY DATA PROCESSING ADDENDUM This Data Processing Addendum ( DPA ) forms part of the agreement for the subscription by the Customer to the Cloudinary Service ("Subscription Agreement") between Cloudinary

More information

PRIVACY POLICY FOR CUSTOMER, PROSPECT AND PARTNER REGISTER

PRIVACY POLICY FOR CUSTOMER, PROSPECT AND PARTNER REGISTER Page 1 (8) PRIVACY POLICY FOR CUSTOMER, PROSPECT AND PARTNER REGISTER This privacy policy has been modified latest on: [May 2 nd, 2018] 1 DATA CONTROLLER Solibri Oy (Business ID 1058643-9) ( Solibri )

More information

Data Processing Addendum

Data Processing Addendum Data Processing Addendum This Data Processing Addendum (" DPA "), forms part of the Agreement or other written or electronic agreement between Pleo Technologies ApS (" Pleo ) and Customer for the purchase

More information

PRIVACY NOTICE LAST UPDATED: SEPT. 2018

PRIVACY NOTICE LAST UPDATED: SEPT. 2018 PRIVACY NOTICE LAST UPDATED: SEPT. 2018 HOW THE BANK USES YOUR PERSONAL DATA This privacy notice provides an overview of how Hellenic Bank Public Company Ltd (the Bank ) processes your personal data. Personal

More information

GDPR Data Processing Addendum

GDPR Data Processing Addendum GDPR Data Processing Addendum Effective Date 24 May 2018 This Data Processing Addendum for the GDPR (Addendum) is made as of the Effective Date by and between Fresh Relevance Ltd incorporated and registered

More information

Rigor, Inc. GDPR Data Processing Addendum

Rigor, Inc. GDPR Data Processing Addendum Rigor, Inc. GDPR Data Processing Addendum This GDPR Data Processing Addendum, including the Standard Contractual Clauses referenced herein ( DPA ), supplements any existing and currently valid Rigor license

More information

Privacy Statement. Introduction

Privacy Statement. Introduction Privacy Statement Introduction Aiken Insurances Ltd is committed to protecting and respecting your privacy. We wish to be transparent on how we process your data and show you that we are accountable with

More information

DATA PROCESSING AGREEMENT/ADDENDUM

DATA PROCESSING AGREEMENT/ADDENDUM DATA PROCESSING AGREEMENT/ADDENDUM This Data Processing Agreement ( DPA ) is made and entered into as of this day of, 2018 forms part of our Terms and Conditions (available at www.storemaven.com/terms-of-service)

More information

BREXIT AND DATA PROTECTION Q & A

BREXIT AND DATA PROTECTION Q & A BREXIT AND DATA PROTECTION Q & A What happens now? The UK decision to leave the EU will not affect existing data protection and privacy laws in the UK. These laws (the UK Data Protection Act 1998 (DPA)

More information

Standard Bank Jersey Limited Summary Financial Statements 2017

Standard Bank Jersey Limited Summary Financial Statements 2017 Standard Bank Jersey Limited Summary Financial Statements /Summary Financial Statements Contents Page General information 2 Financial review 3 Summary Financial Statements 4 6 Contacts 7 / 1 /Summary Financial

More information

DATA PROTECTION NOTICE

DATA PROTECTION NOTICE DATA PROTECTION NOTICE Who are we? We are the Trustees of the Pension Scheme for the Nursing and Midwifery Council and Associated Employers (the Scheme). We collect, hold and use personal information to

More information

DATA PROTECTION STATEMENT

DATA PROTECTION STATEMENT DATA PROTECTION STATEMENT The company Deutsche Verkehrs-Assekuranz-Vermittlungs-GmbH (DVA) collects and processes your personal data in accordance with the relevant data protection rules, in particular

More information

A Guide to Listing and Trading Services

A Guide to Listing and Trading Services A Guide to Listing and Trading Services Introduction The International Stock Exchange (TISE) provides a responsive and innovative listing and trading facility for international companies to raise capital

More information

The General Data Protection Regulation s Impact on M&A

The General Data Protection Regulation s Impact on M&A The General Data Protection Regulation s Impact on M&A PRACTICAL ADVICE ON HOW TO CONTINUE A SMOOTH M&A PROCESS Presented by Avi Gesser, Davis Polk partner, Litigation/Cybersecurity Pritesh P. Shah, Davis

More information

States of Guernsey EU General Data Protection Regulation (GDPR) - High-level impact assessment

States of Guernsey EU General Data Protection Regulation (GDPR) - High-level impact assessment CI Advisory EU General Data Protection Regulation (GDPR) - High-level impact assessment Basis for this report This document has been prepared only for the and solely for the purpose and on the terms agreed

More information

INFORMATION ON THE PROCESSING OF PERSONAL DATA

INFORMATION ON THE PROCESSING OF PERSONAL DATA INFORMATION ON THE PROCESSING OF PERSONAL DATA PRIVACY NOTICE In order to be compliant with the Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection

More information

COLOUR JOB LOCATION: PRINERGY

COLOUR JOB LOCATION: PRINERGY Privacy Notice Contents Privacy Notice 3 Collecting, using and sharing your information Collection of customer information 3 Use of customer information 3 Sharing customer information 4 Accessing your

More information

Data Protection Privacy Notice for people not directly involved in the accident

Data Protection Privacy Notice for people not directly involved in the accident Data Protection Privacy Notice for people not directly involved in the accident Purpose of this Privacy Notice MIB (or we ) respects your privacy and is committed to protecting your personal data. This

More information

Shoobridge Funeral Services (and its subsidiaries)

Shoobridge Funeral Services (and its subsidiaries) Shoobridge Funeral Services (and its subsidiaries) Your privacy is important to us. The following notice/policy explains how we collect, record, use and store your personal information. Please take a moment

More information

EU General Data Protection Regulation vs. Swiss Data Protection Act (in the Private Sector 1 )

EU General Data Protection Regulation vs. Swiss Data Protection Act (in the Private Sector 1 ) EU General Data Protection Regulation vs. Swiss Data Protection Act (in the Private Sector 1 ) October 26, 2017 Version 4.01 David Rosenthal (david.rosenthal@homburger.ch) Updates and more infos: http://www.homburger.ch/dataprotection

More information

2. Background information

2. Background information Customer Guide Customer Guide 1. About this guide HSBC Bank International Limited (HBIB), trading as HSBC Expat, is a wholly-owned subsidiary of HSBC Bank plc (HBEU). This guide provides further information

More information

DATA PROCESSING ADENDUM

DATA PROCESSING ADENDUM W www.exponea.com C +421 948 127 332 sales@exponea.com A Exponea, Twin City B, Mlynské Nivy 12 821 09 Bratislava, SK DATA PROCESSING ADENDUM Exponea s.r.o. registered in the Commercial Register maintained

More information

What are the requirements and responsibilities for financial reporting?

What are the requirements and responsibilities for financial reporting? What are the requirements and responsibilities for financial reporting? Contents: page 2 for financial reporting? page 3 Responsibilities for financial records page 4 Continuous Disclosure page 4 Managing

More information

CP is licenced and supervised by the Commission de Surveillance du Secteur Financier (hereinafter CSSF ).

CP is licenced and supervised by the Commission de Surveillance du Secteur Financier (hereinafter CSSF ). PRIVACY NOTICE Introduction -Who Are We? Compliance Partners S.A. (hereinafter CP ) is a service provide headquartered in Luxembourg, providing a full range of services in all areas of compliance, substance

More information

Licence Agreement

Licence Agreement Licence Agreement EXTERNAL 22 May 2018 Version: 07.00w ------------------- T +44 (0)1206 872143 E collections@ukdataservice.ac.uk www.ukdataservice.ac.uk -------------------... WE ARE SUPPORTED BY THE

More information

Privacy Policy. For the purposes of Data Protection Legislation the data controller is the Company.

Privacy Policy. For the purposes of Data Protection Legislation the data controller is the Company. Privacy Policy Ashoka India Equity Investment Trust plc (the "Company"), or any third party service provider, functionary, or agent appointed by the Company acting on its behalf (together, the "Fund",

More information

DATA PROTECTION LAWS OF THE WORLD. Czech Republic

DATA PROTECTION LAWS OF THE WORLD. Czech Republic DATA PROTECTION LAWS OF THE WORLD Czech Republic Downloaded: 15 July 2018 CZECH REPUBLIC Last modified 24 May 2018 LAW The General Data Protection Regulation (Regulation (EU) 2016/679) (" GDPR") is a European

More information

What does GDPR and the new Data Protection Act mean to Brokers/Intermediaries?

What does GDPR and the new Data Protection Act mean to Brokers/Intermediaries? YYYYYYYYYYY The New Class 2016-2017 Report 2: General Date Protection Regulation (GDPR) What does GDPR and the new Data Protection Act mean to Brokers/Intermediaries? 1 2 Contents The Insurance Institute

More information

Annuity Death Benefit Payment Authority

Annuity Death Benefit Payment Authority Annuity Death Benefit Payment Authority To be completed by the individual(s) acting on behalf of the estate Please complete in Black Ink The death benefits due* under the policy are: Please tick appropriate

More information

Man and Machine - Data Protection Policy

Man and Machine - Data Protection Policy Man and Machine - Data Protection Policy 1. Introduction This Policy sets out the obligations of Man and Machine Ltd, whose registered office is at Unit 8 Thame 40, Jane Morbey Road, Thame, Oxfordshire,

More information

THE IMPACT OF THE CALIFORNIA CONSUMER PRIVACY ACT

THE IMPACT OF THE CALIFORNIA CONSUMER PRIVACY ACT THE IMPACT OF THE CALIFORNIA CONSUMER PRIVACY ACT WHO IS INTRAEDGE? PROVIDING TECH SOLUTIONS FOR DATA PROTECTION IS HEATING UP Source: https://www.dlapiperdataprotection.com/ WHAT IS THE CCPA? California

More information

Quantum PLUS 19 Deposit

Quantum PLUS 19 Deposit Standard Bank Isle of Man Limited and Standard Bank Jersey Limited Structured Product Quantum PLUS 19 Deposit Security and Growth Potential Recent international awards received by companies within the

More information

Zurich International Life. YourLife. Policy conditions Isle of Man

Zurich International Life. YourLife. Policy conditions Isle of Man Zurich International Life YourLife Policy conditions Isle of Man 1. Introduction The Life Insured must disclose all matters which they know, or would reasonably be expected to know, are relevant to our

More information

The Future of Data Privacy in Europe T H E E U R O P E A N G E N E R A L D ATA P R I VAC Y R E G U L AT I O N (G D P R)

The Future of Data Privacy in Europe T H E E U R O P E A N G E N E R A L D ATA P R I VAC Y R E G U L AT I O N (G D P R) The Future of Data Privacy in Europe T H E E U R O P E A N G E N E R A L D ATA P R I VAC Y R E G U L AT I O N (G D P R) K L A U S - E. K L I N G N E R - G S E C G WA P T C D P S About Me Klaus-E. Klingner

More information

Moxtra, Inc. DATA PROCESSING ADDENDUM

Moxtra, Inc. DATA PROCESSING ADDENDUM Moxtra, Inc. DATA PROCESSING ADDENDUM This Data Processing Addendum ( DPA ) forms a part of the Terms of Service found at http://moxtra.com/terms-of-service/, unless Company has entered into a superseding

More information

CUSTOMER DATA PROCESSING ADDENDUM

CUSTOMER DATA PROCESSING ADDENDUM CUSTOMER DATA PROCESSING ADDENDUM This Data Processing Addendum ( DPA ) and applicable Attachments apply when HP acts as a Data Processor and processes Customer Personal Data on behalf of Customer in order

More information

EMPLOYEE NOTICE OF DATA PRIVACY POLICIES AND PROCEDURES

EMPLOYEE NOTICE OF DATA PRIVACY POLICIES AND PROCEDURES EMPLOYEE NOTICE OF DATA PRIVACY POLICIES TABLE OF CONTENTS A. Ecolab s Commitment to Data Privacy... 2 B. Definitions... 2 C. Scope... 3 D. Application of Local Law... 3 E. Employee Data Collected... 3

More information

Policy Statement: Licensing Policy in respect of those activities that require registration under the Financial Services (Jersey) Law 1998

Policy Statement: Licensing Policy in respect of those activities that require registration under the Financial Services (Jersey) Law 1998 Policy Statement: Licensing Policy in respect of those activities that require registration under the Financial Services (Jersey) Law 1998 Issued: 17 December 2010 Glossary of terms: The following table

More information

HIPAA vs. GDPR vs. NYDFS - the New Compliance Frontier. March 22, 2018

HIPAA vs. GDPR vs. NYDFS - the New Compliance Frontier. March 22, 2018 1 HIPAA vs. GDPR vs. NYDFS - the New Compliance Frontier March 22, 2018 2 Today s Panel: Kimberly Holmes - Moderator - Vice President, Health Care, Cyber Liability & Emerging Risks, TDC Specialty Underwriters,

More information

Firefighters Pension Scheme

Firefighters Pension Scheme Compliance Firefighters Pension Scheme General Data Protection Regulation Privacy Notices As confirmed in bulletin 7 (April 2018) the LGA Bluelight team commissioned Squire Patton Boggs to produce a template

More information

privacy notice who is responsible for processing your personal data and who you can contact in this regard reasons for processing your data

privacy notice who is responsible for processing your personal data and who you can contact in this regard reasons for processing your data privacy notice privacy notice This privacy notice provides an overview of how Pancyprian Insurance Ltd (the Company ) processes your personal data. Personal data refers to any information relating to you

More information

Blockchain, data protection, and the GDPR

Blockchain, data protection, and the GDPR Blockchain, data protection, and the GDPR v1.0 25.05.2018 Contributors: Natalie Eichler, Silvan Jongerius, Greg McMullen, Oliver Naegele, Liz Steininger, Kai Wagner Introduction GDPR was created before

More information

Data Processing Addendum

Data Processing Addendum Data Processing Addendum Based on the General Data Protection Regulation (GDPR) and European Commission Decision 2010/87/EU - Standard Contractual Clauses (Processors) This Data Processing Addendum ( DPA

More information

GLOBAL DATA PROTECTION POLICY URUP

GLOBAL DATA PROTECTION POLICY URUP Page 1 of 8 1. SCOPE AND INTRODUCTION GLOBAL DATA PROTECTION POLICY URUP 1.1. This document is intended to provide a policy under which URUP International Limited, its subsidiaries and affiliates and/or

More information

World Bank Group Policy

World Bank Group Policy World Bank Group Policy Personal Data Privacy Bank Access to Information Policy Designation Public Catalogue Number SEC4.05-POL.101 Issued May 30, 2018 Effective May 25, 2018 Content Policy setting forth

More information