Safe Harbor and Data Privacy Statement

Similar documents
Inteum EU or Switzerland Safe Harbor Policy

Georgia Power Valdosta Federal credit union Privacy Policy

Ximedica, LLC Privacy Shield Policy

The Allied Group Privacy Shield Policy

Privacy Shield Notice

Our Commitment to You Privacy Statement

It is the policy of Citizens Deposit Bank & Trust to adhere to the following Privacy Policy.

CBSA PRIVACY POLICY. Canadian Business Strategy Association Page 1

Principles. Bison Transport will implement policies and procedures to give effect to this policy, including:

INTERNATIONAL SOS. Data Protection Policy. Version 1.8

EMPLOYEE NOTICE OF DATA PRIVACY POLICIES AND PROCEDURES

Taking care of what s important to you

Overview of the EU - U.S. Privacy Shield Framework

RICHMOND MINOR HOCKEY ASSOCIATION

Taking care of what s important to you

COMMISSION OF THE EUROPEAN COMMUNITIES COMMISSION STAFF WORKING PAPER

Privacy in Canada Federal Legislation: Personal Information Protection and Electronic Documents Act

SECURITIES TRADING POLICY

TERMS OF USE. Unless otherwise noted, all tickets, goods, and services sold on the TicketBiscuit platform adhere to a NO REFUNDS, NO EXCHANGES policy.

COMMISSION OF THE EUROPEAN COMMUNITIES COMMISSION STAFF WORKING DOCUMENT

LEGAL PRIVACY NOTICE (EFFECTIVE MAY/2018) 12 Demostheni Severi Avenue 5th Floor 1080 Nicosia Cyprus

EMPLOYEE NOTICE OF DATA PRIVACY POLICIES AND PROCEDURES

Privacy Policy. Pursuant to U.S. State & Federal Laws the following is a statement of your legal rights.

HIPAA PRIVACY AND SECURITY AWARENESS

SBI Canada Bank Privacy Policy

Geomni, Inc. EU-U.S. Privacy Shield: Consumer Privacy Policy

compatible with the Global Roaming Service. Terms of Use of FUSION GOL Services (Terms and Conditions for End-Users) Fusion Communications Corp.

ADDENDUM TO THE BROKER AGREEMENT BETWEEN COMMON GROUND HEALTHCARE COOPERATIVE AND BROKER

DISCOVERY GUIDE. This Discovery Guide and Document Production Lists supplement the discovery rules contained

AGENCY: Federal Student Aid, Department of Education. ACTION: Notice of a Modified System of Records.

Customer means any EEA entity that registers for or purchases products or services from SDL or SDL EEA Entities.

Prairie Centre Credit Union

Corporate Communications Policy

DDB. EU/Swiss-U.S. Privacy Shield: Consumer Privacy Policy

May 2, 2018 Page 1 of 8

IC Chapter 28. Internal Grievance Procedures

(c) "Subject" means the commercial enterprise about which a commercial credit report has been compiled.

SunTrust / National Commerce Merger Integration Update. July 12, 2004

City of Lawrence, Kansas. Purchasing Card Guidelines

Privacy Notice. Please read this privacy notice carefully as it explains how we use your personal information.

TIFFANY AND COMPANY: EU-U.S. PRIVACY SHIELD PRIVACY POLICY - CONSUMER DATA

SUBCONTRACTOR BUSINESS ASSOCIATE ADDENDUM

COMMONWEALTH OF PENNSYLVANIA BUSINESS ASSOCIATE ADDENDUM

DATA PROCESSING ADDENDUM

Vanguard Group (Ireland) Limited Vanguard Funds plc Vanguard Investment Series plc Privacy policy. May 2018

UnitedHealthcare Insurance Company. Group Policy

The Marketing Arm Inc. EU-U.S. Privacy Shield: Consumer Privacy Policy

AGREEMENT PURSUANT TO THE TERMS OF HIPAA ; HITECH ; and FIPA (Business Associate Agreement) (Revised August 2015)

Table of Contents. SUMMARY OF KEY TERMS AGREEMENT TERMS Costs Overdraft Protection Payments

COMMISSION OF THE EUROPEAN COMMUNITIES

TRINITY UNIVERSITY THE PURCHASING CARD A GUIDE FOR USERS

CAR 7-3 Credit Card Policy CAR7-3

TTCU FEDERAL CREDIT UNION

BiddingForGood Terms of Use

CANADIAN PAYMENTS ASSOCIATION ASSOCIATION CANADIENNE DES PAIEMENTS RULE E2

GUIDING PRINCIPLES HANDBOOK. Operating Agent. Designated Representative

Consumer Information for Resolving Disputed Claims on Interstate Household Goods Shipments. Sponsored by the Professional Members of the:

Company Accreditation

Supplier Code of Conduct

CROWDBUREAU CORPORATION TERMS OF USE. Last Update: December 10, 2017 ACCEPTANCE

Discount Window Lending Agreement Instructions

External Account Transfer Agreement July 16, 2014

ADDSECURES WAY OF PROCESSING PERSONAL DATA

The EU s General Data Protection Regulation enters into force on 25 May 2018

NOTICE OF PRIVACY PRACTICES

A Summary of Your Rights Under the Fair Credit Reporting Act

Customer GDPR Data Processing Agreement

ABBOTT DIABETES CARE Effective Date: February 4, 2018

Jericho Tennis Club's Privacy Policy

THIRD-PARTY MANAGEMENT OF INFORMATION RESOURCES

FOR OFFICE USE ONLY Hard Hat Safety Glasses: B C Y Vest String

Our Privacy Policy and Credit Reporting Privacy Policy

Tallgrass Energy Partners, LP. Code of Business Conduct and Ethics

BUSINESS ASSOCIATE AGREEMENT

Credit Card Acceptance and Processing Procedures

ADMIRAL MARKETS AS PRIVACY POLICY

E-Sign Disclosure we, our you your Account Communication 1. Scope of Communications to Be Provided in Electronic Form.

COMMITMENT OF THE ALLIANCE OF AUTOMOBILE MANUFACTURERS, INC. AND THE ASSOCIATION OF GLOBAL AUTOMAKERS, INC.

THE CITY AND COUNTY OF SAN FRANCISCO SECTION 125 CAFETERIA PLAN HIPAA PRIVACY POLICIES & PROCEDURES

HSBC Privacy code. Everything you need to know about the security and privacy of your personal information at HSBC

INFORMATION AND CYBER SECURITY POLICY V1.1

FINANCIAL PLANNING FINANCIAL SERVICES GUIDE Part 1

Please Read These Terms Carefully Before Using This Site

Main Street Bank EXTERNAL FUNDS TRANSFER AGREEMENT

BULLETIN SINGLE FAMILY SERVICING APPLICATIONS SCHEDULE

DELHAIZE AMERICA PHARMACIES AND WELFARE BENEFIT PLAN HIPAA SECURITY POLICY (9/1/2016 VERSION)

Fitbit, Inc.: EU-U.S. Privacy Shield Privacy Policy - Consumer Data

(Updated and Effective as of April 24, 2012)

California Bank of Commerce. Online Banking and Mobile Banking Services Agreement

JEFFERSON HEALTH CARE LINK ACCESS AGREEMENT

BYLINE BANCORP, INC. INSIDER TRADING POLICY

Commercial. Sales Guidelines. Christine Webster, Health Net We help make whole health possible. For California Agents/Brokers

TRAVELTOKENS SALE PRIVACY POLICY Last updated:

Insider Trading Policy

IHDE BUSINESS ASSOCIATE AGREEMENT (BAA)

My Thermostat Rewards Program Terms and Conditions

CASH MANAGEMENT SCHEDULE WIRE TRANSFER SERVICES ON SANTANDER TREASURY LINK

DATA PROTECTION AND PERSONAL INFORMATION FAIR PROCESSING POLICY

Southern California Edison Revised Cal. PUC Sheet No E Rosemead, California (U 338-E) Cancelling Revised Cal. PUC Sheet No.

Transcription:

Safe Harbor and Data Privacy Statement Introduction Paragon is a professional services firm providing process design, early case assessment, electronic discovery, consulting and archive services to law firms, corporations and government agencies for litigations, investigations, and mergers & acquisitions. Protecting the privacy of our clients is important to Paragon. Paragon adheres to the Safe Harbor Agreement concerning the transfer of personal data from the European Union ("EU") to the United States of America. Accordingly, Paragon follows the Safe Harbor Principles published by the U.S. Department of Commerce ("Principles") with respect to all such data. If there is any conflict between the policies in this statement and the Principles, the Principles will govern. This statement outlines Paragon s general policy and practices for implementing the Principles, including the types of information we gather, how we use it, and the choices affected individuals have regarding our use of, and their ability to correct, that information. This statement applies to all personal information we handle (except as noted below), including on-line, off-line, and manually processed data. For purposes of this statement, "personal information" means information that: is transferred from the EU to the United States; is recorded in any form; is about, or pertains to, a specific individual; and can be linked to that individual. It does not include information that pertains to a specific individual, but from which that individual could not reasonably be identified. Protecting Individuals' Privacy Notice and Choice To the extent permitted by the Safe Harbor Agreement, we reserve the right to process personal information in the course of providing

professional services to our clients without the knowledge of individuals involved. Where we collect and process, at the direction of our clients, personal information directly from individuals in the E.U., it remains the responsibility of our client to inform the individual of the purposes for which we collect and use it and the types of non-agent third parties to which the information is disclosed. It remains the responsibility of our client to inform those individuals about the choices and means, if any, offered the individuals for limiting the use or disclosure of their information. Disclosures and Transfers Paragon will not disclose an individual's personal information to third parties unless directed by our client or when one or more of the following conditions are true: We have the individual's permission to make the disclosure; The disclosure is required by law or professional standards; The disclosure is reasonably related to the sale or disposition of all or part of our business; The information in question is publicly available; The disclosure is reasonably necessary for the establishment or defense of legal claims; or The disclosure is to another Paragon entity or to persons or entities providing services on our or our client s behalf (each a "transferee"), consistent with the purpose for which the information was obtained, if the transferee, with respect to the information in question: is subject to law providing an adequate level of privacy protection; has agreed in writing to provide an adequate level of privacy protection; or subscribes to the Principles. Permitted transfers of information, either to third parties or within Paragon, include the transfer of data from one jurisdiction to another, including transfers to and from the United States of America. Because privacy laws vary from one jurisdiction to another, personal information may be transferred to a jurisdiction where the laws provide less or different protection than the jurisdiction in which

the information originated. Data Security, Data Integrity & Access and Correction Paragon takes our clients security seriously and undertakes every reasonable step to protect their information. To prevent unauthorized access or disclosure, maintain data accuracy, and ensure the appropriate use and confidentiality of information, either for its own purposes or on behalf of our clients, Paragon has put in place appropriate physical, electronic, and managerial procedures to safeguard and secure the information we process. However, we cannot guarantee the security of information on or transmitted via the Internet. Paragon processes personal information only in ways compatible with the purpose for which it was collected or subsequently authorized by our clients. To the extent necessary for such purposes, we take reasonable steps to make sure that personal information is accurate, complete, current, and otherwise reliable with regard to its intended use. Paragon processes data under the guidance and direction of our clients. If an individual becomes aware that information we maintain about that individual is inaccurate, or if an individual would like to update or review his or her information, the individual must contact our client and proceed according to that client s personal information policy. Enforcement and Dispute Resolution Paragon utilizes the self-assessment approach to assure its compliance with our privacy statement. Paragon periodically verifies that the policy is accurate, comprehensive for the information intended to be covered, prominently displayed, completely implemented, and in conformity with the Principles. We encourage interested persons to raise any concerns with us using the contact information below. We will investigate and attempt to resolve complaints and disputes regarding use and disclosure of personal information in accordance with the principles contained in this policy.

With respect to any complaints relating to this policy that cannot be resolved through our internal processes, we have agreed to participate in the dispute resolution procedures of the panel established by the EU data protection authorities to resolve disputes pursuant to the Safe Harbor Principles. In the event that we or such authorities determine that we did not comply with this policy, we will take appropriate steps to address any adverse effects and to promote future compliance. Any person who we determine is in violation of our privacy policies will be subject to disciplinary process. Privacy Statement Changes This privacy statement may be changed from time to time, consistent with the requirements of the Safe Harbor. We will post any revised policy on this Web site, or a similar Web site that replaces this Web site. Information Subject to Other Policies We are committed to following the Principles for all personal information within the scope of the Safe Harbor Agreement. However, certain information is subject to policies of the firm that may differ in some respects from the general policies set forth in this statement. Information relating to present or former Paragon personnel is subject to our policies concerning personnel data privacy, which are available to present Paragon personnel on Paragon's intranet and former Paragon personnel upon request. Information obtained from or relating to clients or former clients is further subject to the terms of any privacy notice to the client, any master services agreement, or statement of work, engagement letter or letters with the client, and applicable laws and professional standards.

How to Contact Us Questions, comments or complaints about Paragon's Safe Harbor Data Privacy Statement or data collection and processing practices can be e-mailed to paragonhr@paragonafa.com or mailed to Privacy Office, Paragon, 1230 Peachtree St. NE. Suite 200, Atlanta, Georgia 30309. In the event that a complaint is not satisfactorily addressed by Paragon within a reasonable time frame, you may contact the Federal Trade Commission at www.ftc.gov/ftc/complaint.htm,.