Skip to main content

Controlar – Electrónica Industrial e Sistemas, S.A. is committed in its compliance with the General Data Protection Regulation (GDPR), guaranteeing the protection of personal data and strengthening the relationship of trust that it holds with its clients.

This Personal Data Protection and Privacy Notice provides information on the data we collect and how we can use it, as well as the security measures adopted to protect your identity and personal data.

Controlar – Electrónica Industrial e Sistemas, S.A. reserves the right to change this Personal Data Protection And Privacy Notice, and we therefore invite you to consult this document on a regular basis.

Please note that this Personal Data Protection and Privacy Notice applies only to data collected by Controlar – Electrónica Industrial e Sistemas, S.A. and does not cover information that may have been provided in other sites or social platforms managed by other entities or organisations.

1. Data Controller
Controlar – Electrónica Industrial e Sistemas, S.A., NIPC 503349283, NISS 20006195965, with registered address at Rua do Caulino, N.º 314, in the Alfena district, municipality of Valongo.

2. Personal Data
Under the terms of GDPR, personal data is considered to be information relating to any identifiable natural person (known as the “data subject”). The term “identifiable“ refers to a natural person who can be identified, directly or indirectly, particularly with reference to an identifier such as a name, and identification number, location data, an IP address (internet protocol), cookies, electronic identifiers or one or more elements that specifically relate to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
Personal data is also considered to be a set of distinct data that could lead to the identification of a specific person.

3. Data subject
A data subject is a natural person to whom the data refers and who has used the website belonging to Controlar – Electrónica Industrial e Sistemas, S.A.

4. Categories of personal data and purpose
Controlar – Electrónica Industrial e Sistemas, S.A. collects different categories of data:
Name;
Email address;
Telephone;
Location:
Academic qualifications;
Curriculum Vitae.

The data is collected and handled the different purposes. We collect and handle data from the contact form, when you send or receive email and/or when you subscribe to services that require registration, when mailing invitations to events organised by CONTROLAR – Eletrónica Industrial e Sistemas,  S.A. or by other partner entities and visitor identification, subscription to newsletters and other possible marketing campaigns run by Controlar – Electrónica Industrial e Sistemas, S.A. submission of spontaneous applications, and also to be able to contact you.

Controlar – Electrónica Industrial e Sistemas, S.A. requests the expressed consent of its website visitors before using their personal data for the different purposes stated in this Personal Data Protection and Privacy Notice:

By providing your personal data to Controlar – Electrónica Industrial e Sistemas, S.A. the data subject authorises the they be handled in accordance with this Personal Data Protection and Privacy Notice.

5. Data protection officer
Controlar – Electrónica Industrial e Sistemas, S.A. has a data protection officer (DPO), who has the responsibility of educating the data controller or subcontractor, along with its staff, about it obligations under the data protection law; monitor compliance with all legislation related to data protection on behalf of the organisation, namely audits, awareness and training activities for staff involved in data handling operations; provide guidance and manage any data protection impact assessment that may be undertaken; act as a point of contact for requests relating to the handling of personal data; handle complaints and requests from data subjects exercising their rights; cooperate with the data protection authority – Portuguese Data Protection Authority (Commissão Nacional de Proteção de Dados – CNPD). And act as a point of contact for all queries related to the protection of personal data.
Data protection officer at CONTROLAR – Eletrónica Industrial e Sistemas, S.A. can be contacted via the email dpo@pt.controlar.com.

6. Personal data retention time and methods
Controlar – Electrónica Industrial e Sistemas, S.A. retains personal data according to the purposes for which they are collected and handled, but only for period of time necessary to fulfil that purpose.
Controlar – Electrónica Industrial e Sistemas, S.A. may, by law, be required to retain data for a minimum period of time. One year for traffic and location data for the purpose of investigation, detection and prosecution of serious crimes; 10 years to provide information to the tax authorities for accounting or fiscal purposes.
The data you provide us with when you visit our website is protected in the context of several security measures, namely through conditional access and safeguarding the confidentiality of data.
We warn you, however, that in providing personal data online, there is always a risk that third parties may intercept and use this data. By submitting your personal data online, you will therefore be doing so of your own accord and at your own risk.
We advise you not to include personal data in the emails that you send us, particularly when of a sensitive or confidential nature. Please refrain from sending us credit card numbers or any sensitive personal data by email.
We do not knowingly collect data from minors. As a parent or legal guardian, please do not allow your children to send personal data without your permission.

7. Use of cookies
We may use technology such as “cookies” to register session information, capture visits and access details of our website that allow us to continually improve our services, in order to provide better and more useful resources for our website users/visitors.
Cookies are small data files which are generally used to keep a maintenance log, which help us to remember your preferences, for example. One cookie, in itself, does not identify any specific user/visitor.
You can deactivate all cookies if you wish. You can also instruct your computer to advise you when cookies are being used. Please adjust your browser settings in both of the above cases.

8. Third-party links
Please be aware that, whilst you are browsing a website operated by ourselves, you may be redirected to links to third-party websites. These third-party websites have separate and independent privacy policies. These policies are neither managed nor controlled by Controlar – Electrónica Industrial e Sistemas, S.A., and we therefore accept no responsibility whatsoever for these websites content or activities. In the meantime, we aim to protect the integrity of our website and platforms, and would welcome any pertinent feedback you may have. We equally recommend that you carefully read the terms and conditions and privacy policies of these sites before submitting any personal data or information.

9. Your consent
By using your website you are agreeing to our Personal Data Protection and Privacy Notice.

10. Legitimate interest
According to Article 6(1)(f) of the GDPR, together with Recital 47 of the preamble of the same law, the processing of personal data of data subjects is considered lawful when there is a legitimate interest for such processing, especially when the data subjects have a customer relationship with the data controller. In this manner, Controlar considers the processing of personal data to be lawful and legitimate for these data subjects for the purpose of sending newsletters and promotional information, even without their explicit consent, when the data was registered following commercial contacts, such as participation in trade fairs or other events, or requests for proposals and quotes, either digitally or in person.

Data subjects who wish to do so may request that this processing be interrupted or deleted by communicating this to Controlar’s DPO, according to Articles 12 and 13 of this Privacy Policy.

11. Data sharing
Controlar may, in some cases, share personal data with other companies within Controlar. The share of these data will only occur for the purposes of commercial disclosures, sending newsletters, and promotional emails. Controlar commits to ensuring that all its companies receiving these data comply with all standards determined by Controlar, and GDPR.

When required by law, Controlar may have to disclose personal data to national or European authorities, in which case Controlar cannot guarantee the protection of personal data.

12. Rights of the data subject
As we would like to ensure that you are aware of your rights and the terms of applicable legislation, would like to inform you that:

  • Your personal data belongs to you. As such, you have the right of access, rectify, limit, remove and oppose the handling of this data, as well as obtain it from Controlar – Electrónica Industrial e Sistemas, S.A.
  • We will make every effort to keep your personal data up-to-date and protected according to industry best practice.
  • You have the right to file a complaint to the appropriate data protection authority. In Portugal, this would be the Portuguese Data Protection Authority (Commissão Nacional de Proteção de Dados – CNPD). You can obtain more information about the CNPD on the website www.cnpd.pt.
  • You can retract your consent for the handling of your personal data at any time, within the framework of GDPR, which does not prejudice the legality of the data handling that will have taken place up until that time, based on the previous consent you provided.

13. Contact us
Should you have any queries about this personal data protection notice, or you would like to exercise any of the above-mentioned rights, please contact us via the following channels:

Email of DPO: dpo@pt.controlar.com

COMMITMENT TO THE DATA PROTECTION POLICY: INFORMED PERSONS AND PROTECTED DATA

The Directorate / Governing Body of Electronics, Computer Science, Instrumentation and Telecommunications, SA ( EIIT), (hereinafter, the person responsible for the treatment), assumes the maximum responsibility and commitment to the establishment, implementation and maintenance of this Data Protection Policy, guaranteeing the continuous improvement of the person responsible for the treatment with the aim of achieving excellence in relationship with compliance with Regulation (EU) 2016/679 of the European Parliament and of the Council, of April 27, 2016, regarding the protection of natural persons with regard to the processing of personal data and the free circulation of these data and by which Directive 95/46 / CE (General Data Protection Regulation) (DOUE L 119/1, 04-05-2016), and the Spanish regulations on the protection of personal data (Organic Law) , specific sectoral legislation and its implementing regulations).

The EIIT Data Protection Policy rests on the principle of proactive responsibility , according to which the data controller is responsible for compliance with the regulatory and jurisprudential framework that governs said Policy, and is capable of demonstrating it before the competent control authorities.

In this sense, the person responsible for the treatment will be governed by the following principles that should serve all its personnel as a guide and frame of reference in the processing of personal data:

  1. Data protection by design: the data controller will apply, both at the time of determining the means of treatment and at the time of the treatment itself, appropriate technical and organizational measures, such as pseudonymisation, designed to effectively apply the principles of data protection, such as data minimization, and integrating the necessary guarantees in the treatment.
  1. Data protection by default: the data controller will apply the appropriate technical and organizational measures in order to guarantee that, by default, only the personal data that are necessary for each of the specific purposes of the treatment are processed.
  1. Data protection in the information life cycle: the measures that guarantee the protection of personal data will be applicable during the complete life cycle of the information.
  1. Legality, loyalty and transparency: personal data will be processed in a lawful, loyal and transparent manner in relation to the interested party.
  1. Purpose limitation: personal data will be collected for specific, explicit and legitimate purposes, and will not be further processed in a manner incompatible with those purposes.
  1. Minimization of data: personal data will be adequate, pertinent and limited to what is necessary in relation to the purposes for which they are processed.
  1. Accuracy: the personal data will be exact and, if necessary, updated; All reasonable measures will be taken so that personal data that are inaccurate with respect to the purposes for which they are processed are deleted or rectified without delay.
  1. Limitation of the conservation period: the personal data will be kept in a way that allows the identification of the interested parties for no longer than necessary for the purposes of the processing of personal data.
  1. Integrity and confidentiality: personal data will be treated in such a way as to guarantee adequate security of personal data, including protection against unauthorized or illegal treatment and against its loss, destruction or accidental damage, through the application of technical measures or appropriate organizational arrangements.
  1. Information and training: one of the keys to guaranteeing the protection of personal data is the training and information that is provided to the personnel involved in their processing. During the life cycle of the information, all personnel with access to the data will be properly trained and informed about their obligations in relation to compliance with data protection regulations.

The EIIT Data Protection Policy is communicated to all the personnel of the data controller and made available to all interested parties.

Consequently, this Data Protection Policy involves all the personnel responsible for the treatment, who must know and assume it, considering it as their own, each member being responsible for applying it and verifying the data protection regulations applicable to their activity. , as well as identifying and providing the opportunities for improvement that it deems appropriate in order to achieve excellence in relation to compliance.

This Policy will be reviewed by the Directorate / Governing Body of EIIT , as many times as deemed necessary, to adapt, at all times, to the current provisions on the protection of personal data.


PRIVACY POLICY

Information in compliance with the personal data protection regulations

In Europe and Spain there are data protection regulations designed to protect your personal information that are mandatory for our entity.

For this reason, it is very important for us that you fully understand what we are going to do with the personal data that we ask for.

Thus, we will be transparent and we will give you control of your data, with simple language and clear options that will allow you to decide what we will do with your personal information.

Please, if you have any questions after reading this information, do not hesitate to ask us.

Thank you very much for your help.

  • ¿ Who are we? Our name: Electrónica, Informática, Instrumentación y Telecomunicaciones, SA (EIIT, SA)
  • Our CIF / NIF: A-78327731
  • Our main activity: Engineering.
  • Our address: Camino Robledo Chavela 9B Puertas 1-8, 28210 Valdemorillo (Madrid)
  • Our contact telephone number: 91 890 46 14
  • Our website: eiit.com
  • For your confidence and security, we inform you that we are an entity registered in the following Mercantile Registry / Public Registry:

MADRID Commercial Registry with protocol number 2879

We are at your disposal, do not hesitate to contact us.

What are we going to use your data for?

In general, your personal data will be used to be able to interact with you and to provide you with our services.

Likewise, they can also be used for other activities, such as sending you advertising or promoting our activities.

Why do we need to use your data?

Your personal data is necessary to be able to interact with you and to be able to provide you with our services. In this sense, we will put at your disposal a series of boxes that will allow you to decide clearly and simply about the use of your personal information.

Who is going to know the information we ask for?

In general, only the personnel of our entity that is duly authorized may have knowledge of the information that we request.

Similarly, those entities that need to have access to it so that we can provide our services may have knowledge of your personal information. Thus, for example, our bank will know your data if payment for our services is made by card or bank transfer.

Likewise, those public or private entities to which we are obliged to provide your personal data due to compliance with any law will have knowledge of your information. To give you an example, the Tax Law obliges you to provide the Tax Agency with certain information on economic operations that exceed a certain amount.

In the event that, apart from the aforementioned assumptions, we need to disclose your personal information to other entities, we will request your permission in advance through clear options that will allow you to decide in this regard.

How are we going to protect your data?

We will protect your data with effective security measures based on the risks involved in the use of your information.

For this, our entity has approved a Data Protection Policy and annual controls and audits are carried out to verify that your personal data is safe at all times.

Will we send your data to other countries?

In the world there are countries that are safe for your data and others that are not so. Thus, for example, the European Union is a secure environment for your data. Our policy is not to send your personal information to any country that is not secure from a data protection point of view.

In the event that, for the purpose of providing the service, it is essential to send your data to a country that is not as safe as Spain, we will always request your permission in advance and we will apply effective security measures that reduce the risks of sending your personal information to another country.

How long are we going to keep your data?

We will keep your data during our relationship and as long as the law requires us. Once the applicable legal deadlines have ended, we will proceed to dispose of them in a safe and environmentally friendly way.

What are your data protection rights?

At any time, you can contact us to find out what information we have about you, rectify it if it is incorrect and delete it once our relationship has ended, in the event that this is legally possible.

You also have the right to request the transfer of your information to another entity. This right is called “portability” and it can be useful in certain situations.

To request any of these rights, you must make a written request to our address, along with a photocopy of your ID, in order to identify you.

In the offices of our entity we have specific forms to request these rights and we offer you our help to complete them.

To learn more about your data protection rights, you can consult the website of the Spanish Agency for Data Protection (www.agpd.es).

Can you withdraw your consent if you change your mind at a later time?

You can withdraw your consent if you change your mind about the use of your data at any time.

Thus, for example, if you were once interested in receiving advertising for our products or services, but you no longer wish to receive further advertising, you can let us know through the opposition to treatment form available at the offices of our entity.

In case you understand that your rights have been neglected, where can you make a claim?

In case you understand that your rights have been disregarded by our entity, you can file a claim with the Spanish Agency for Data Protection, through any of the following means:

  • Electronic office: www.agpd.es
  • Postal address:

Spanish Agency for Data Protection
C / Jorge Juan, 6
28001-Madrid

  • Via telephone: Tel. 901 100 099 | Tel. 91 266 35 17

Filing a claim with the Spanish Agency for Data Protection does not entail any cost and the assistance of a lawyer or solicitor is not necessary.

Will we create profiles of you?

Our policy is not to create profiles of the users of our services.

However, there may be situations in which, for the purposes of providing the service, commercial or otherwise, we need to create profiles of information about you. An example could be the use of your purchase or service history to be able to offer you products or services adapted to your tastes or needs.

In this case, we will apply effective security measures that protect your information at all times from unauthorized persons who intend to use it for their own benefit.

 Will we use your data for other purposes?

Our policy is not to use your data for purposes other than those that we have explained to you. If, however, we need to use your data for different activities, we will always request your permission in advance through clear options that will allow you to decide in this regard.


POLÍTICA DE SEGURIDAD DE LA INFORMACIÓN

EIIT, como empresa dedicada al diseño, fabricación y puesta en marcha de equipos de test y sistemas de automatización para todos los campos de la industria, manifiesta abiertamente su intención de ofrecer unos servicios / productos competitivos a todos sus clientes; por dicho motivo, ha implantado un sistema de gestión de seguridad de la información en el seno de la organización, cuyo principal objetivo es alcanzar los objetivos del negocio y la satisfacción de sus clientes garantizando en todo momento la seguridad de la información a través de unos procesos establecidos y fundamentados en un proceso de mejora continua, garantizando la continuidad de los sistemas de información, minimizando los riesgos de daño y asegurando el cumplimiento de los objetivos fijados para asegurar en todo momento la confidencialidad, integridad y disponibilidad de la información.

Para ello asume su compromiso con la seguridad de la información según la norma de referencia UNE-EN ISO/IEC 27001, por lo que la Dirección General establece los siguientes principios:

  • Competencia y liderazgo por parte de la dirección como compromiso para desarrollar el sistema de Gestión de la Seguridad de la Información.
  • Determinar las partes interesadas internas y externas que son pertinentes para el sistema de gestión de la Seguridad de la Información y cumplir con sus requisitos.
  • Entender el contexto de la organización y determinar las oportunidades y los riesgos de la misma respecto a la seguridad de la información como base para la planificación de acciones para abordarlos, asumirlos o tratarlos.
  • Velar por garantizar la satisfacción de nuestros clientes, incluyendo las partes interesadas en los resultados de la empresa, en todo lo referente a la realización de nuestras actividades y su repercusión en la sociedad.
  • Establecer objetivos y metas enfocados hacia la evaluación del desempeño en materia de Seguridad de la Información, así como a la mejora continua en nuestras actividades, reguladas en el Sistema de Gestión que desarrolla esta política.
  • Cumplimiento de los requisitos de la legislación aplicable y reglamentaria a nuestra actividad, los compromisos adquiridos con los clientes y las partes interesadas y todas aquellas normas internas o pautas de actuación a los que se someta la empresa.
  • Asegurar la confidencialidad de los datos gestionados por la empresa y la disponibilidad de los sistemas de información, tanto en los servicios ofrecidos a los clientes como en la gestión interna, evitando alteraciones indebidas en la información.
  • Asegurar la capacidad de respuesta ante situaciones de emergencia, restableciendo el funcionamiento de los servicios críticos en el menor tiempo posible.
  • Establecer las medidas oportunas para el tratamiento de los riesgos derivados de la identificación y evaluación de activos.
  • Motivar y formar a todo el personal que trabaja en la organización, tanto para el correcto desempeño de su puesto de trabajo como para actuar conforme a los requisitos impuestos por la Norma de referencia, proporcionando un ambiente adecuado para la operación de los procesos.
  • Mantenimiento de una comunicación fluida tanto a nivel interno, entre los distintos estamentos de la empresa, como con clientes.
  • Evaluar y garantizar la competencia técnica del personal para el desempeño de sus funciones, así como asegurar la motivación adecuada de éste para su participación en la mejora continua de nuestros procesos.
  • Garantizar el correcto estado de las instalaciones y el equipamiento adecuado, de forma tal que estén en correspondencia con la actividad, objetivos y metas de la empresa
  • Garantizar un análisis de manera continua de todos los procesos relevantes, estableciéndose las mejoras pertinentes en cada caso, en función de los resultados obtenidos y de los objetivos establecidos.

Estos principios son asumidos por la Dirección General, quien dispone los medios necesarios y dota a sus empleados de los recursos suficientes para su cumplimiento, plasmándolos y poniéndolos en público conocimiento a través de la presente Política de Seguridad de la Información.