Data protection notice for our registration to the CEO conference
according to Art. 13 and 14 of Regulation (EU) 2016/679 - General Data Protection Regulation (GDPR) (Version: January 2024)
Below you will find more detailed information on how we process your personal data in the context of your voluntary registration to the CEO conference on 14/03/2024-15/03/2024. “Personal data" means any information relating to natural persons whose identity is determined or at least determinable (such as names, addresses, contract data).
Responsible for data processing
We, that is the
VIENNA INSURANCE GROUP AG Wiener Versicherung Gruppe
Schottenring 30, 1010 Vienna
Phone: +43 (0)50 350-22000 or E-Mail: info@vig.com
If you have any concerns or questions about the processing of your data by our company, please contact our data protection officer at datenschutz@vig.com.
What data are we processing?
We only process your personal data that we have received as part of your registration for the CEO conference:
· First- and last name
· Email address
· Postal address
· Passport number
· Information on flight times (flight numbers, dates of arrival & departure)
· Dietary preferences and intolerances, if voluntarily provided by you
Purpose and legal basis for the processing of your data
Your personal data is processed for the purpose of organizing the CEO conference on 14/03/2024-15/03/2024 and required for its provision and maintenance according to Art 6 Para 1 lit b GDPR. Any voluntarily provided sensitive health information on dietary preferences and/or intolerances is processed based on your explicit consent according to Art 9 Para 2 lit a GDPR.
Storage duration of your data
In principle, we only store your data as long as we need it to fulfill the purposes described above and our contractual and legal obligations. Your personal data that is processed for the purpose of organizing the CEO conference will be deleted after the CEO conference.
Recipients of your data
The protection of your data is important to us. Therefore, data will only be passed on if there is a contractual or legal requirement to do so, if this is necessary to protect our legitimate interest or if we have your consent to do so. In these cases, your data will only be passed on to the extent absolutely necessary.
To operate and provide the conference registration portal and to prevent and rectify technical errors, we regularly use IT service providers which may also have access to personal data on our behalf and in accordance with our instructions in order to be able to provide the assigned IT services. In all cases where we use IT service providers, we always ensure that a corresponding processing agreement has been concluded in accordance with Article 28 GDPR.
Data security
We use extensive technical and organizational measures to comply with Art 32 GDPR, to secure our data processing and to keep your personal data confidential. This applies in particular to the protection of your personal data against accidental or unlawful destruction, loss, alteration or unauthorized disclosure of or access to personal data that is transmitted, stored or otherwise processed.
The protective measures include, for example, the use of modern security software and encryption procedures, physical access controls, authorization concepts and other precautions to ward off and prevent attacks.
Your rights as a data subject
You have the right to request information on whether we process your personal data. If this is the case, you can request information about the data itself, the purpose, the categories, the recipients, the origin and the storage period of the data we process about you.
If we process data about you that is incorrect or incomplete, you can request that it be corrected or completed. You can also request the erasure of unlawfully processed data ("right to be forgotten"). Please note, however, that this only applies to incorrect, incomplete or unlawfully processed data. If it is unclear whether the data processed about you is incorrect or incomplete or is being processed unlawfully, you can request that the processing of your data be restricted until this question has been finally clarified. It is possible at any time to object to your data being processed to safeguard legitimate interests (Art. 6 para. 1 lit. f GDPR) for reasons arising from your particular situation. You can also revoke your consent at any time and without reason to prevent the further use of your personal data collected and used on the basis of a declaration of consent.
You may receive the personal data we process about you, provided that we have received the data directly from you, in a structured, commonly used and machine-readable format specified by us, or you may instruct us to transmit this data directly to a third party of your choice, provided that this recipient enables us to do so from a technical point of view and the data transmission does not involve unreasonable effort or conflict with legal or other confidentiality obligations or confidentiality considerations on our part or on the part of third parties.
For all your concerns, please use the contact details as stated below.
If you are of the opinion that the processing of your data violates data protection law or that your data protection rights have been violated in any other way, you have the right to lodge a complaint at the Austrian Data Protection Authority,
Barichgasse 40-42, 1030 Vienna,
E-Mail: dsb@dsb.gv.at,
Tel: +43 1 52 152-0.
Use of automated decision-making including profiling in accordance with Art. 22 (1) and (4) GDPR
We do not use automated decision-making or profiling.
Contact
Please contact us with your data protection questions and concerns at datenschutz@vig.com or by post:
VIENNA INSURANCE GROUP AG Wiener Versicherung Gruppe
Data Protection Officer
Schottenring 30
1010 Vienna