Privacy and information Processing Policy, etc.
Geith International Ltd. (“Geith”) complies with the relevant laws and regulations dealing with personal information protection including the Data Protection Act 1988 as amended by the Data Protection (Amendment) Act 2003 as well as The ePrivacy Regulations 2011 (S.I. 336 of 2011). Geith strives to protect the rights and interests of persons providing personal information, such as customers, employees, and Website users through its Privacy and Information Processing Policy and the Privacy and Information Handling Policy. Geith notifies you of how and for what purposes we may use your information and what measures have been taken to protect your personal information through its policies regarding personal data privacy and information processing. In the event any of the provisions of the relevant policies are amended, we will publicly notify you of such amendments through this Website or individually.
The Company’s policy related to personal information consists of the following: 1) the Privacy and Information Processing Policy regarding the personal information protection of all persons providing their own personal information, 2) the Privacy and Information Handling Policy regarding the personal information protection of this Website’s users, and 3) the Image Information Processing Equipment Operation & Management Policy regarding personal image information protection. However, privacy and Information handling policies related to other Geith affiliates’ websites are respectively set forth on those websites.
- Privacy and Information Processing Policy
- General Rules
Personal information is information regarding a living person. That is, personal information refers to information that through which a person can be identified such as name, resident registration number, and image. This includes information which may not identify a person on its own, but when combined with other information, may identify a person.
Personal information provider is a person who can be identified by the processed information.
Geith will disclose the Privacy and Information Processing Policy on the first page of its Website (Geith.com) so that you can always easily check the policy. When the Policy is amended, we will publicly notify you of the amendment through a notice on our Website or individually.
- Processed Personal Information and Processing Purpose
Unless permitted by relevant laws and regulations or with the personal information provider’s prior consent, Geith will not process any sensitive information and personal identification information issued for the purpose of identifying an individual that may seriously infringe the privacy of :
- Processed Information
Name, postal address, email, company name, service usage data, access information, cookies, and IP address.[Concerning employment]
Name, resident registration number, photo, password, postal address, telephone number,
cellphone number, email, education, military service, foreign language competence, computer
competence, license/certificate, family, and work experience.
- Purpose of Processing
Member management and customer service including handling of complaints.
Online market research or opinion poll.
Marketing or advertising.
Service offerings and settlement of fees.[Concerning the customer]
Recruitment screening and contact with applicants, wage/salary payment, fringe benefits, HR
management including various job performance supports, and evaluations.
- Processing and the Retention Period of Personal Information
Once the purpose of collection and the use of personal information are met and completed, as a fundamental rule, the relevant information will be immediately destroyed. However, we will retain the following information during the period specified below and for the reasons specified below, and we will obtain consent from the person who provided his or her own personal information, as necessary.
Retained information: Name, postal address, email, and company name.
Retention period: One year.
Reason of retention: User inquiries/requests control, user identification, etc.
Retained information: Service usage data, access information, cookies, and IP address.
Retention period: Three years.
Reason of retention: Improve service quality through data analysis of the user’s service usage.
Retained information: Name, resident registration number, photo, password, postal address, telephone number, cellphone number, email, education, military service, foreign language competence, computer competence, license/certificate, family, and work experience.
Retention period: Until the expiration of employment relationship.
※ However, the personal information of an applicant for employment, who was not employed, will be retained for 5 years for future employment management purposes with the person’s consent.
Reason for retention: wage/salary payment, fringe benefit, HR management including various job performance supports, and evaluations.
- How Personal Information is Destroyed
Any personal information saved in an electronic file format will be deleted using a technology that prevents the recovery of the deleted records.
The personal information retained on paper will be shredded or burned.
- Disclosure of Personal Information to a Third Party
Geith will collect personal information within the scope of the purpose of the collection, and will not use your personal information beyond the scope of collection purpose or offer or disclose it to a third party. However, the following are the exception to the above rule:
Consent was received from the person who provided his or her own personal information.
According to specific provisions in other relevant laws.
The person providing their own personal information or his/her legal representative is in a state in which an opinion/intention cannot be expressed, or prior consent cannot be gained due to an invalid address, but disclosure to a third party is urgently needed for the sake of the data provider or a third party’s life, body, and property.
- Commissioning of Personal Information Processing
Geith will not commission personal information processing to an outside agency without your consent. We commission personal information processing as follows, and regulate necessary matters/issues so that personal information can be safely managed upon commission of service as contracted under the relevant laws and regulations:
When specifically required under the law or to comply with obligations under laws and regulations.
When there is a concern for harm to another person’s life or body, or when there is a concern of unlawfully infringing upon another person’s property and profits.
In a case where the service contracted with the personal information provider cannot be offered without processing his or her personal information, or when it is difficult to perform the service contracted with the personal information provider, but her or she does not clearly express his/her intention to terminate the contract.
[Method and Procedure to Exercise Rights]
A person wanting to exercise the above rights regarding their personal information may complete the Read/Inspect, Revise, Delete, and Suspend the Processing Form and sent it by email or fax to the department in charge of personal information (See “09. Customer Request Service on Personal Information” concerning the department).
Unless there is a legitimate reason, Geith will take a proper action within 10 days of receiving such a request. When there is a reason to reject or restrict the request, we will inform you of the reason and a method to appeal the decision within 5 days upon receiving the request. When the concerned person or legal representative makes a request as above, we can confirm the identity of the person or legal representatives by checking their identification cards such as a resident registration card or a recognized electronic signature.
- Technical, Administrative, and Physical Protection Measures for Personal Information
Geith takes the following safeguards in handling personal information so that it will not be lost, stolen, leaked, modified, or damaged:
Geith complies with the criteria set forth by laws and regulations for the safe storage and transmission of personal information.
We protect against computer virus by using a vaccine program. The vaccine program is periodically updated, but if there is a sudden emergence of a new virus, we will implement the appropriate vaccine as soon as it becomes available so that personal information infringement can be prevented.
To deal with outside infiltration, including hacking, we use an infiltration interruption system and a weakness analysis system.
Geith restricts the rights to access personal information to the following cases: a person carrying out sales and marketing activity involving the personal information provider, a person engaging in personal information management, and a person whose task requires the use of personal information.
We conduct regular in-house training and external commissioned training for those employees that handle personal information, and we thoroughly manage and supervise them to comply with the laws and regulations regarding personal information protection.
To protect personal information, we limit physical access to the information through the use of locks and similar devices.
We control access to the computer room and archives by designating and operating them as specially protected areas.
- Customer Request Service for Personal Information
Geith has appointed the following department and personal information protection administrator to protect personal information and to process complaints related to personal information:
Geith Marketing Team
E: firstname.lastname@example.org P: 00353 1 650 2100
- Obligation of Public Notification
When the current Privacy and information Processing Policy is amended or deleted, we will provide notice on our Website 10 days before such amendment or deletion takes place.
Date of Public Notification: 28/07/2017
Date of Enforcement: 28/07/2017