Your personal information and how we handle it
With your personal information, we mean the data we collect and save about you and how you use our services that directly or indirectly identify you. We use this information to provide feedback, services, provide you with a better experience, improve services, and provide offers that fit your needs.
The following information is a summary of how we collect and manage your personal data in accordance with the Data Protection Ordinance (GDPR).
Type of personal information we collect
Contact details
When you contact or become a Nordic IT Project customer, we collect your contact information:
Name, address, e-mail address, phone number and organization number (if case as a corporation).
Information about your services
We also save data about which of our services you send us enquiries about, and the way you would use them.
Here’s how we collect personal information
We collect and process data as …
- … you indicate yourself when you become a customer with us.
- … you indicate when you contact us in the form of notes, chat conversations, emails and recorded conversations.
- … we get from other sources – such as UC AB.
- … collected through cookies that collect information on and from your browser.
Exactly what information we collect about you depends on which of our services you use.
This is what we use personal data to
In order for us to process your data, one of the following legal bases must be met:
- Requirements to complete the agreement with you.
- Requirements for fulfilling a Nordic IT Project’s legal obligation.
- The treatment lies in both your and Nordic IT Projects interest.
- Consent from you for that particular treatment.
In order for us to provide our services to you, we need to process your personal information. Below you will find information about what we use your data for, and the legal basis for which the treatment is supported.
Provision of services
We process personal information to identify you as a customer, contact you and to handle and deliver the services you ordered. As well as personal information required to handle billing and payment of the services you use.
Legal basis: Completion of agreement.
Communication and support
We may use personal information from previous contact with us in order to provide you with better assistance.
We use your contact information and information about which services you use as the basis for invoices, newsletters, important information about your services, offers and tips on how to use our services.
Legal basis: Importance, consent and performance of agreements.
Development of our services and products
We can process personal information about how you use our services, and from contacting us as a basis to improve your experience specifically and our services in general.
Legal basis: Importance and consent.
Marketing
In order to market relevant products and services to you according to your needs, we process personal information about what services you use and how you use them.
Legal basis: Importance and consent.
Security and prevention of abuse
We process personal data in order to detect and prevent the following for our services and our network:
- abuse
- intrusion
- attacks such as viruses, DDOS
- offenses
- use of our services that violates our terms
Legal basis: Completion of contract and legal obligation.
Statutory obligations
We process personal data in order to comply with the requirements of the law.
Legal basis: Legal obligation.
So long we save personal data
We save personal information as long as there is a documented purpose for the treatment.
Contact our Data Protection Officer for details.
To whom do we provide personal information
Partners, subcontractors and other companies involved in projects
We have agreements with all partners and subcontractors in the EU, and EU standard contractual clauses for all
outside the EU. The agreements govern, among other things, the personal data being processed, why processing is done, how personal data are to be protected and how long they are treated. The agreements also contain instructions from personal data administrators to personal data counters about how personal data can be processed.
We strive to never share more personal information than absolutely necessary with each partner.
We take appropriate safeguards to ensure that your personal information is handled in accordance with applicable laws regarding safety and privacy. The same requirements apply to our subcontractors.
Agencies
Upon request, we may, by law and authority decision, be required to provide certain personal data to, for example, the Police.
How to protect your personal information
We use industry standards to safely store, treat and communicate sensitive information such as personal information. The protection is implemented with systematic, organizational and other measures to ensure integrity, confidentiality and accessibility.
Our staff are bound by confidentiality agreements and treat only the information their mission requires.
You decide over your personal information
You decide on your own personal information. That is, you decide which tasks you want to leave and what processing of your personal information you approve and you can revoke your consent as you wish.
However, note that we need some personal information to provide our services to you. If you choose to revoke your consent, this may mean that we cannot provide all our services to you.
How we process your personal information when you are no longer a customer
When you terminate your collaboration with us, we will remove all your personal information where there is no longer any purpose for further processing. We will also notify any potential partners and subcontractors which processed your data to be deleted from them.
Among the things that are not removed are:
- Data required by the Accounting Act.