Personal Data Protection

GDPR

Organisational directive for the processing and protection of personal data under Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR) and Act No. 18/2018 Coll. on the Protection of Personal Data.

Data Controller

Euro Service Business spol. s r.o.
Registered office: Banská Bystrica, Tr. Hr. Králové 13
Company ID (IČO): 44550197

Supervisory Authority

Office for Personal Data Protection of the Slovak Republic
Hraničná 12, 820 07 Bratislava 27
Tel: 02/ 32 31 3214 · E-mail: statny.dozor@pdp.gov.sk

Pursuant to Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (hereinafter „GDPR") and pursuant to Act No. 18/2018 Coll. of 29 November 2017 on the Protection of Personal Data and on Amendments to Certain Acts (hereinafter „the Data Protection Act"), this directive contains the technical and organisational measures our company has undertaken to comply with, since under Article 24 GDPR it is responsible — taking into account the nature, scope, context and purposes of processing, as well as the risks of varying likelihood and severity for the rights and freedoms of natural persons — for ensuring and being able to demonstrate that processing is carried out in accordance with the GDPR.

Contents

  1. Definitions of basic terms
  2. Mapping of personal data
  3. Principles of personal data processing
  4. Conditions for giving consent
  5. Processing of special categories of data
  6. Rights of the data subject
  7. Responsibility of the controller
  8. Data protection by design and by default
  9. Processor
  10. Records of processing activities
  11. Security of processing
  12. Notification of a personal data breach
  13. Data protection impact assessment
  14. Appointment of a data protection officer
  15. Transfer of data to a third country
  16. Confidentiality