The Portuguese Public Finance Council (CFP) is committed to protecting the privacy and personal data of its users, in strict accordance with the General Data Protection Regulation (GDPR) - Regulation (EU) 2016/679 and national legislation applicable.
1. Responsible for the Processing of Personal Data
The CFP is the entity responsible for processing the personal data provided to it, whether through its website or through other means of communication. The processing is carried out in strict accordance with applicable legal provisions, ensuring the security, confidentiality and integrity of personal data.
2. Collection and Processing of Personal Data
CFP collects and processes personal data in the following circumstances:
- Recruitment and Selection: In the context of spontaneous applications and recruitment and selection processes, the personal data collected is kept for a maximum period of one year or for the period necessary to complete the procedure.
- Contact Forms: Personal data collected through contact forms are kept for a period of one year.
- Newsletter subscription: As part of subscribing to the CFP newsletter, data such as name, email address and sector of activity are collected, which are kept until the holder expresses the intention to cancel the subscription.
- Use of Cookies: CFP uses necessary cookies to ensure the proper and secure functioning of its website, as well as analytical cookies to evaluate the use of the website and improve the user experience, without collecting directly identifiable personal data.
3. Legal Basis for Processing
The processing of personal data by CFP is based on the following legal assumptions:
- Contract Execution: When processing is necessary for the performance of a contract to which the data subject is party.
- Compliance with Legal Obligations: When processing is necessary to comply with legal obligations to which the CFP is subject.
- Legitimate Interest: To pursue CFP's legitimate interests, namely the security of information systems and the continuous improvement of its services.
4. Data Processing Principles
The CFP ensures that the processing of personal data is conducted in accordance with the principles of lawfulness, loyalty, transparency, data minimization, purpose limitation, accuracy, conservation limitation, integrity and confidentiality, as provided for in the GDPR.
5. Data Retention Periods
Personal data is kept only for the period strictly necessary to achieve the purposes for which it was collected, in accordance with the applicable legal retention periods.
6. Rights of Data Subjects
Data holders have the right to request from the CFP access to personal data concerning them, as well as their rectification, erasure, limitation of processing, portability and opposition to processing. Requests to exercise rights must be sent in writing to the email address: dpo @ cfp.pt.
7. Communication of Data to Third Parties
Personal data may be communicated to subcontracted entities to provide services to the CFP, always with adequate guarantees of confidentiality and security, formalized through specific contracts. There is no communication of personal data to third parties for purposes other than those mentioned, except when required by law.
8. Security Measures
The CFP adopts appropriate technical and organizational measures to protect personal data against unauthorized access, alteration, disclosure, loss or destruction, including access controls, data encryption and regular security audits, in accordance with the risk assessment.
9. Security Incident Management
In the event of a security incident that results in a breach of personal data, CFP undertakes to notify, in accordance with the law, the competent authorities and affected data subjects, when applicable.
10. Changes to the Privacy Policy
CFP reserves the right, at any time, to update this Privacy Policy, with a view to its continued compliance with applicable legislation and best privacy and data security practices. Changes will be duly communicated through the official CFP website.
11. Data Protection Officer
Dr. Priscila Vilhena Ganga is the CFP's Data Protection Officer, and is available to answer any questions related to this Privacy Policy or about Personal Data Protection (GDPR), via email: dpo @ cfp.pt .
Date of last update: 26/09/2024