General Data Protection Regulation

Last update: January 2021.

1. USER INFORMATION

Integración de Metodologías y Sistemas, S.L., as the Data Controller, informs you that, in accordance with the provisions of Regulation (EU) 2016/679 of 27 April (GDPR) and Organic Law 3/2018, of 5 December, on data protection and guarantee of digital rights (LOPDGDD), we will process your data as set out in this Privacy Policy.

This Privacy Policy outlines the methods we use to collect your personal data, the reasons for its collection, our handling of it, with whom we share it, how we safeguard it, and your choices concerning its processing.

By accepting the terms outlined in this Policy, you consent to the processing of your personal data by our company. This data is collected in order to provide you with our services.

2. CONTACT

Company Name: Integración de Metodologías y Sistemas, S.L.

Trade name: OpenHR

Company Registration Number : B91019455

Address: Calle de Alfonso XII, 62, 2nd Floor, 28014 Madrid

e-mail: mkt@openhr.cloud

3. KEY PRINCIPLES

We are dedicated to delivering our services with the utmost quality, which includes handling your data with security and transparency. Our core principles are as follows:

  • Legality: We will only collect your Personal Data for specific, explicit and legitimate purposes.
  • Data minimisation: We only collect personal data that is strictly relevant and necessary for the stated purposes.
  • Purpose limitation: We will collect your personal data strictly for the purposes specified and in accordance with your preferences, adhering to the principle of purpose limitation.
  • Purpose limitation: We will only collect your personal data for the stated purposes and only in accordance with your wishes.We collect your personal data solely for the purposes specified, respecting your preferences..
  • Data Security: We implement suitable technical and organizational measures to protect your data from damage, including unauthorized disclosure, access, accidental or unlawful destruction, loss, or alteration, and any other form of unlawful processing. These measures are proportionate to the risks involved.
  • Access and Rectification: We provide methods for you to access or correct your data as needed.
  • Retention: We store your personal data lawfully and appropriately, only for the duration necessary to fulfill the purposes for which it was collected.
  • International transfers: where your data is to be transferred outside the EU/EEA, it will be adequately protected.
  • Third parties: Personal data is accessed and transferred to third parties in compliance with applicable laws and regulations, and with suitable contractual safeguards.
  • Direct marketing and cookies: We comply with applicable legislation on advertising and cookies.

4. COLLECTION AND PROCESSING OF YOUR PERSONAL DATA

The types of data that may be requested and processed are:

  • Datos de carácter identificativo.

We automatically collect data regarding your visit to our website, as detailed in our cookie policy.

When we request your personal data, we will clearly inform you about the specific data we collect and its intended purpose. Generally, we collect and process your personal data for the following reasons:

  • To provide information, services, products, relevant information and news in the sector.
  • Sending communications.

5. LEGITIMACY

In accordance with applicable data protection regulations, your personal data may be processed provided that:

  • You have given us your consent for the purposes of processing. You may, of course, withdraw your consent at any time.We have obtained your consent for processing purposes. This consent can be withdrawn by you at any time.
  • It is required by law.
  • There is a legitimate interest that is not undermined by your privacy rights, such as sending commercial information either through your subscription to our newsletter or because of your status as a customer.We have a legitimate interest in sending you commercial information, either because you subscribe to our newsletter or because you are a customer. This interest does not override your privacy rights.
  • It is necessary for the provision of any of our services through a contractual relationship between you and us.This is essential for delivering our services under the terms of our contract with you.

6. COMMUNICATION OF PERSONAL DATA

The data may be communicated to companies related to Integración de Metodologías y Sistemas, S.L. for the provision of various services in their capacity as Data Processors. The company will not transfer any data, except where legally required to do so.Data may be shared with companies affiliated with Integración de Metodologías y Sistemas, S.L. These companies act as Data Processors and provide various services. No data will be transferred to other third parties unless legally mandated.

7. YOUR RIGHTS

In relation to the collection and processing of your personal data, you may contact us at any time to:

  • Access your personal data and any other information indicated in Article 15.1 of the GDPR.
  • Rectify your personal data that is inaccurate or incomplete in accordance with Article 16 of the GDPR.
  • Delete your personal data in accordance with Article 17 of the GDPR.
  • Restrict the processing of your personal data in accordance with Article 18 of the GDPR.
  • Restrict the processing of your personal data in accordance with Article 18 of the RGPD. 
  • Object to the processing of your personal data in accordance with Article 21 of th RGPD.

You have the right to withdraw your consent at any time if you have given it for a specific purpose. This will not affect the legality of processing based on your consent before its withdrawal.

You may exercise these rights by sending a reasoned and accredited communication to mkt@openhr.cloud

You also have the right to submit a complaint to the competent supervisory authority. (www.aepd.es) if you consider that the processing does not comply with current regulations.

8. LEGAL INFORMATION

This Policy's requirements are additional to, and do not supersede, any other applicable data protection laws, which will always take precedence.

The company may modify this Policy periodically. We will notify you of any changes, requesting you to review and accept the latest version.

9. SECURITY POLICY - Download the document here

OpenHR services, a product of Integración de Metodologías y Sistemas SL, offer the most robust Human Resources and Internal Communication solution available. Our goal is to empower organizations to manage talent effectively, boost company productivity, and enrich the employee experience.

Integración de Metodologías y Sistemas SL recognizes information as a critical asset requiring comprehensive protection. To this end, the company has implemented an Information Security Management System, aligning with the ISO 27001 standard. This system is designed to uphold the confidentiality, integrity, and availability of information, safeguarding it from various threats. Its purpose is to ensure business continuity, minimize potential damage, maximize return on investment and business opportunities, and foster continuous improvement.

Integración de Metodologías y Sistemas SL has established the following core objectives and principles as the foundation for its information security strategy.

The protection of personal data and individual privacy.

● Safeguarding the organisation's records

● Protecting intellectual property rights
● Documenting the information security policy
● Assigning security responsibilities
● Training and education in information security
● Recording security incidents
● Business continuity management
● Managing changes that may occur in the company relating to security

The Management of Integración de Metodologías y Sistemas SL, through the development and implementation of this Information Security Management System, makes the following commitments:

●To ensure that product and service development aligns with legislative requirements, the organization must identify the relevant legislation for its business lines, as encompassed by the Information Security Management System.

● Establish and comply with contractual requirements with interested parties.
●Define security training requirements and provide the necessary training in this area to interested parties by establishing training plans.

●Prevent and detect viruses and other malicious software by developing specific policies and establishing contractual agreements with specialised organisations.

●Develop continuity plans that align with internationally recognized methodologies to effectively manage business continuity.
●Clearly define the consequences of security policy violations. These consequences must be documented in all contracts with stakeholders, suppliers, and subcontractors.

● Act at all times in accordance with the strictest professional ethics.

This Policy establishes the framework for continuously improving and reviewing the objectives of the Information Security Management System. It is disseminated throughout the organization via the document management system and information boards. The Policy undergoes an annual review for adequacy, with extraordinary reviews conducted during special situations or significant changes to the Information Security Management System. It is also accessible to the general public.

Provision of OpenHR services (company name product) Integración de Metodologías y Sistemas SL) It is the most powerful Human Resources and Internal Communication solution on the market, helping you manage your organisation's talent, increasing your company's productivity and improving the employee experience.

OpenHR, a product of Integración de Metodologías y Sistemas SL, offers the market's most powerful Human Resources and Internal Communication solution. It empowers organizations to manage talent, boost productivity, and enhance the overall employee experience.