The purpose of these principles is to demonstrate that the processing of personal data by the controller takes place
in accordance with the currently valid legal regulation, in particular Act 18/2018 Coll. personal protection
(new only "the new law of the ZOOÚ ") and Regulation (EU) 2016/679 of the European Parliament and of the Council
of 27 April 2016 on the protection of individuals with regard to the processing of personal data and on free movement
such data (hereinafter referred to as the "GDPR Regulation"). The new legislation gives the operator
obligation having regard to the nature, extent and purpose of the processing of personal data and the risks involved
probability and severity of the natural person's right to adopt appropriate technical and organizational
measures to ensure and demonstrate that the processing of personal data is carried out in accordance with
with new legislation. The operator is obliged to update the measures taken as necessary.
This document is the result of an assessment of the processing of personal data by the controller for the purposes of
legal standards governing the protection of personal data. By introducing standardized personal protection
based on the principles set out here, the risk of personal data breaches is minimized.
Operator:
DC JOMIS, s.r.o.
Horelica 5008
022 01 Čadca
IČO: 36 815 039
Milan Čulák
0917 329 665
jomis.uctovnictvo@centurm.sk
(next in GDPR rules like „Operator“ )
Legal reason for processing personal data:
The legal basis for the processing of personal data by the controller on data subjects of all categories
are the following provisions of the GDPR, or new law ZOOÚ:
-
the processing of personal data is necessary for the performance of the contract to which he is a party
the person concerned, or to take action before the conclusion of the contract upon request
the person concerned, - according to § 13 par. 1 letter b) ZOOÚ, resp. Art. 6 letter b) GDPR.
(orders, work contracts, purchase contracts, framework contracts, employment contracts, CVs ....)
-
According to § 78 par. 3 ZOOÚ the operator who is the employer of the person concerned is entitled
provide her personal data or publish her personal data to the extent of title, name, surname,
job classification, job classification, job classification, personal number of the employee or
employee number of the employee, professional department, place of work,
telephone number, fax number, e - mail address to the workplace and identification
data of the employer, if necessary in connection with the performance of work duties, official
duties or functional duties of the person concerned. Provision of personal data or
the disclosure of personal data must not impair the seriousness, dignity and security of the data subject. (employee data)
-
the processing of personal data is necessary under a special regulation or international
of the agreement by which the Slovak Republic is bound, - according to § 13 par. 1 letter c) ZOOÚ, resp. Art. 6 letter c)
GDPR (cadastral law, commercial code, labor code, health insurance law, law
on social insurance, law on income tax ....)
-
the processing of personal data is necessary for the purpose of the legitimate interests of the controller
or a third party, except where those interests outweigh the interests or rights
the data subject requesting the protection of personal data, in particular if the data subject is a child,
- according to § 13 par. 1 letter f) ZOOÚ, resp. Art. 6 letter f) GDPR
-
further processing of personal data for the purpose of archiving, for scientific purposes, for historical purposes
research or for statistical purposes, provided that it complies with a specific regulation and is complied with
adequate safeguards to protect the rights of the data subject.
Statement:
We declare that, as the controller of your personal data, we comply with all legal obligations
required by applicable legislation, in particular the Personal Data Protection Act and the GDPR, and therefore that:
-
we will only process your personal data for the valid legal reason described above.
-
Pursuant to Article 13 of the GDPR, we hereby fulfill our obligation to provide information to the persons concerned
-
we will enable you and support you in exercising and exercising your rights under the new ZOOÚ law and the GDPR regulation.
Affected persons
-
Contractual and in front of the contractual business partners and clients of the operator
-
Operator staff
Processing purposes:
We process personal data that you entrust to us yourself for the purpose of fulfilling these purposes:
-
Contractual / pre-contractual partners and clients of the operator:
- identification of the contracting party
-
provision of the agreed service (processing of personal data necessary for performance
purpose of accounting services and human resources management)
-
Sending marketing offers and doing other marketing activities
-
The Operator declares that it does not work with the records in any way and does not provide them to third parties or entities
-
Employees:
-
The operator processes the personal data of its employees exclusively for the purposes
employment relations and other legal relations arising from the employment relationship
rights and social security rights.
-
The operator processes the personal data necessary for the payment of wages and management
human resources on the basis of employment or processing on the basis of agreements
on work performed outside the employment relationship
-
Another purpose is to fulfill the employer's obligations related to the employment relationship,
civil service or similar relationship (eg under employment agreements
performed outside the employment relationship), including pre-contractual relations
-
Also to ensure the identification of your employee in employment contracts
-
The operator uses the GPS system to optimize the company's fuel costs,
clear fuel billing, automatic logbook generation, business reporting
roads, tracing of the vehicle in case of its theft, control of compliance with labor law
duties of employees in driving a company car, protection of property of the employer - service
vehicles from theft, damage.
-
The operator declares that it does not work with the records in any way and
does not provide them to third parties or entities
-
CCTV:
-
The operator uses a camera system to prevent and protect its customers, its own and their property.
The Operator declares that it does not work with the records in any way and does not provide them to third parties or entities
How long will we collect your personal information?
-
The operator guarantees that the personal data provided by the data subject in question
contract or otherwise will be processed in information systems in accordance with the principle
minimization of storage and, in the event that the purpose of processing is eliminated, the operator
guarantees to delete personal data. In the event that the said personal data will be processed
for a purpose other than that set forth above in this Article, the person concerned shall be concerned for that purpose
as well as the legal basis for such processing.
-
The Operator warrants the personal data of employees for the purposes specified in these
principles will be processed for a maximum of the duration of the employment relationship, or if
it requires any of the special regulations so for the period specified in this legal regulation.
Security and protection of personal data
We protect personal data as much as possible. We protect them as if they were our own.
We have put in place all possible technical and organizational measures to prevent abuse,
damage or destruction of your personal data.
Transfer of personal data to third parties (intermediaries, recipients)
Your personal data is accessible to authorized persons authorized by the operator who are bound
confidentiality and retraining in the field of processing security.
We handle most processing operations ourselves and do not need third parties.
To secure some specific processing operations that we are unable to provide
we use the services of intermediaries who specialize in the given processing
and are bound by an intermediary agreement in accordance with the GDPR.
They are providers of the following platforms and services:
-
Social Insurance
-
Health insurance
-
Tax Office
-
Statistical Office
-
Health and safety service provider
Data transfer outside the EU
We process data exclusively in the European Union or in countries that provide a degree of protection
based on a decision of the European Commission.
Your rights regarding privacy
-
You have several rights regarding privacy. If you want one
To exercise these rights, please contact us via the email address above.
-
You have a right to information that is already met by this privacy policy. - obligation to provide information
-
Thanks to the right of access , you can call us at any time and we will show you within 30 days what your personal data is being processed and why.
-
If something changes for you or you notice any personal information that is out of date or incomplete,
you have a right to add and change your personal information.
-
You can exercise the Restriction of Processing if you believe we are processing yours
inaccurate data, you think we are processing illegally, but you do not want all the data
delete or if you object to the processing.
-
You can limit the scope of personal data or processing purposes.
-
Right of erasure (to be forgotten): Your other right is the right to erasure, in case
that there is no legal legal basis that entitles us to resp. legal obligation which
shows us your personal information to process. In this case, we will delete all your personal
data from its system, as well as from the system of all sub-processors and advances in law
within a specified period.
How you can exercise these rights
You can contact us in one of the following ways:
by e-mail: jomis.uctovnictvo@centrum.sk písomne alebo
in person by delivery to the registered office DC JOMIS, s.r.o., Horelica 5008, 022 01 Čadca, IČO: 36 815 039
If you believe that your privacy rights have been violated, you have the right to lodge
a complaint with a supervisory body which is the Office for Personal Data Protection at:
Hraničná 12
820 07 Bratislava 27
Slovenská republika
Identification data:
IČO:36064220
DIČ:2021685985
Office Secretariat:
+421 /2 3231 3214
E-mail: statny.dozor@pdp.gov.sk
Filing office: monday - thursday: 8:00 AM - 2:00 PM, friday 8:00 AM - 2:00 PM.
This policy of personal data processing has been in force since May 25, 2018 and replaces the previous Personal Data Protection.