Your Data, Your Rights
We're committed to protecting your personal data and complying with the General Data Protection Regulation (GDPR).
On this page
EU Compliant
GDPR 2018
What is GDPR?
The General Data Protection Regulation (GDPR) is a comprehensive data protection law that came into effect on May 25, 2018. It applies to all organizations operating within the European Union (EU) and the European Economic Area (EEA), as well as organizations outside these regions that offer goods or services to EU/EEA residents.
GDPR gives individuals greater control over their personal data and establishes strict rules for how organizations can collect, process, store, and share this data.
Key principles of GDPR:
- Lawfulness, fairness, and transparency
- Purpose limitation - data collected for specific purposes
- Data minimization - only collect what's necessary
- Accuracy - keep personal data accurate and up to date
- Storage limitation - don't keep data longer than needed
- Integrity and confidentiality - ensure appropriate security
Your Rights Under GDPR
GDPR grants you significant rights over your personal data. We are committed to respecting and facilitating these rights.
Right to Access
Art. 15Request a copy of all personal data we hold about you
Right to Rectification
Art. 16Request correction of inaccurate or incomplete data
Right to Erasure
Art. 17Request deletion of your personal data ('Right to be Forgotten')
Right to Restrict
Art. 18Request restriction of processing your data
Right to Portability
Art. 20Receive your data in a portable, machine-readable format
Right to Object
Art. 21Object to processing based on legitimate interests
Legal Basis for Processing
Under GDPR, we must have a valid legal basis to process your personal data. Here are the legal bases we rely on:
Consent
You have given clear consent for processing
Contract
Processing is necessary for a contract
Legal Obligation
Required to comply with the law
Legitimate Interest
Necessary for our legitimate business interests
We will always inform you of the legal basis we rely on when we collect your data. You can withdraw consent at any time.
Data We Collect
We collect and process the following categories of personal data in compliance with GDPR:
Identity Data
Name, username, job title, and other identifiers you provide
Contact Data
Email address, phone number, and postal address
Professional Data
Resume content, work history, education, skills, and qualifications
Technical Data
IP address, browser type, device information, and usage patterns
Data Retention
We only retain your personal data for as long as necessary to fulfill the purposes we collected it for, including satisfying any legal, accounting, or reporting requirements.
Retention periods:
You can request deletion of your data at any time by contacting our Data Protection Officer.
International Data Transfers
When we transfer your personal data outside the EEA, we ensure appropriate safeguards are in place to protect your data.
Safeguards we use:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Transfers to countries with adequate data protection laws
- Binding Corporate Rules for intra-group transfers
- Certification mechanisms and codes of conduct
All our cloud service providers maintain GDPR-compliant data processing agreements and appropriate security measures.
Data Security
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk.
Security measures include:
- End-to-end encryption for data in transit (TLS 1.3)
- AES-256 encryption for data at rest
- Regular security audits and penetration testing
- Access controls and authentication mechanisms
- Employee security training and awareness programs
- Incident response and breach notification procedures
In the event of a data breach that poses a risk to your rights, we will notify you and the relevant supervisory authority within 72 hours.
Complaints & Supervisory Authority
If you believe that we have not complied with your data protection rights, you have the right to lodge a complaint.
Step 1: Contact Us First
We recommend contacting our DPO first at [email protected]. We'll try to resolve your concern promptly.
Step 2: Supervisory Authority
You can contact the data protection authority in your country of residence, place of work, or where the alleged infringement occurred.
Policy Updates
We may update this GDPR compliance page periodically to reflect changes in our practices or regulatory requirements.
- We will post any changes on this page
- The "Last updated" date will be revised
- For material changes, we will notify you via email
- Significant changes require your renewed consent where applicable
We recommend reviewing this page periodically to stay informed about how we protect your data under GDPR.
Contact Us
For any questions about this GDPR compliance page or to exercise your data protection rights, please contact us.
Data Protection Officer
General Inquiries
Exercise Your Rights
Contact our Data Protection Officer to exercise any of your GDPR rights.
