REGISTER AND PRIVACY STATEMENT
This is the register and Data Protection Statement in accordance with OMP-Konepaja Oy's Personal Data Act (Sections 10 and 24) and the EU General Data Protection Regulation (GDPR). Prepared on May 20, 2018. Last modified on October 22, 2018.
REGISTRAR
OMP-Konepaja Oy
Lumijoentie 2
90400 OULU
CONTACT PERSON RESPONSIBLE FOR THE REGISTER
Iiro Korkiakoski
0400 926562
iiro.korkiakoski@ompgroup.fi
NAME OF THE REGISTER
Company customer register
LEGAL BASIS AND PURPOSE OF THE PROCESSING OF PERSONAL DATA
The legal basis for the processing of personal data under the EU General Data Protection Regulation is the legitimate interest of the controller (customer relationship). The purpose of the processing of personal data is to communicate with customers and to maintain the customer relationship.
INFORMATION CONTENT OF THE REGISTER
The information to be stored in the register is: person's name, company / organization, contact information (telephone number, e-mail address, address), information about the ordered services and their changes, billing information, other information related to the customer relationship and the ordered services.
REGULAR SOURCES OF INFORMATION
The information stored in the register is obtained from the customer e.g. Messages sent via web forms, e-mail, telephone, via social media services, contracts, customer meetings and other situations in which the customer discloses their information.
REGULAR DATA TRANSFERS AND TRANSFERS OUTSIDE THE EU OR THE EEA
Personal data will not be passed on on a regular basis and will not be transferred outside the EU or the EEA.
PRINCIPLES OF PROTECTION OF THE REGISTER
The register shall be handled with due care and the information processed by the information systems shall be adequately protected. The controller shall ensure that the stored data is treated confidentially and only by the employees whose job description it belongs to.
RIGHT OF INSPECTION AND RIGHT TO REQUEST CORRECTION OF INFORMATION
Every person in the register has the right to check the information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check the data stored about him or her or request a correction, the request must be sent in writing to the data controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).