As you (and your email inbox) may have heard, new data protection laws are being launched all over the world, including General Data Protection Regulations (GDPR) in Europe.
To keep pace with these new laws, we are updating our privacy policy, effective May 25, 2018. Our new policy outlines how we work together with our trusted partners in sharing data to improve your experience and includes legal updates. Review our revised privacy policy and full terms and conditions.
Why are you updating your Privacy Policy and Terms and Conditions?
The most important thing is our relationship with you. Our goal is to keep your data safe and secure, so we’ve updated privacy policy and terms and conditions to explain how we’re keeping your data secure.
What types of data do you have access to and how do you collect it?
We have access to the information that was provided by you or your educational institution. This can include your name, email, phone number, physical and mailing address, student transcript information, national identification numbers (social security number, passport number), medical information and history that you disclose to us, and information about how you self-identify.
We make it a priority to collect personal information directly from you, although there may be occasions when information is collected from third parties, such as host or partner universities or a publicly maintained record, such as news outlets or public databases.
Will you share my contact information with third parties?
We do share information with your educational institution, our trusted affiliate overseas partners and providers, and travel authorities. We do not sell, rent, trade or share any information gathered with any other companies or third parties who are not directly involved in the delivery of your program. This information is used only internally by company administrators and administrators of any company partners in the locations to which you sign up so we can better understand your needs and keep improving our services.
What are you doing to keep my data secure?
We are committed to ensuring that your information is secure. We take all reasonable and appropriate measures to protect your data from unauthorized access, disclosure, loss, use, modification, or other misuse. Moreover, we use a secure means to consistently destroy hard copies of personal information that are no longer needed. Data held by us on our servers is encrypted at all layers of our network, and all staff are trained in appropriate technical procedures to ensure a safe environment.
If I don’t agree to your terms and conditions, what can I do?
You have the right to revoke consent to the onward transfer of your PII (Personally Identifying Information) as long as there is no conflicting legitimate business interest or legal necessity. All deletion requests should be sent to us at the address below, and we will process your request within a reasonable time after receipt. However, we are not responsible for removing your Personal Information from the lists or systems of any third party who has previously been provided your information in accordance with this Policy.
If you don’t agree with our terms and conditions, we understand and respect your decision, but it means we are unable to serve you with your travel abroad experience. The data that already exists within our systems will safely remain there for the next seven years. You may request to have your data removed from our records as long as there is no legal reason for us to hold that data.
I have more questions regarding your protection of my data. Who should I contact?
For any questions regarding our compliance with GDPR requirements, to request the copy, or to request removal of personal data, please contact:
Data Protection Officer
DPO@cisabroad.com
Our European Data Protection Representative can be reached by:
sending an email to DPR Group at ge@dpr.eu.com or by contacting us on our online webform at www.dpr.eu.com/ge
Our Data Protection Authority is the Spanish Agency of Data Protection, +34 901 100 099 , (spain) 91.266.35.17, Spanish Agency for Data Protection , C/ Jorge Juan, 6 , 28001-Madrid , Open from Monday to Friday 9am to 5:30pm CEST