Pyramid E&C group is committed to ensuring the security and protection of the personal data that we process, and to provide a compliant and consistent approach to data protection in line with the General Data Protection Regulation (EU) 2016/679 (GDPR).
This policy outlines our commitment to GDPR compliance, ensuring that personal data is processed lawfully, transparently, and for a specific purpose.
This policy applies to all employees, contractors, vendors, and other stakeholders who process personal data on behalf of Pyramid E&C group, including cloud-based and digital systems.
We adhere to the following principles as required by GDPR:
We only process personal data where we have a lawful basis, which may include:
We respect the rights of data subjects under GDPR, including:
Appropriate technical and organizational measures are in place to ensure the confidentiality, integrity, and availability of data.
In the event of a data breach, we will notify the supervisory authority within 72 hours and inform affected individuals if there is a high risk to their rights and freedoms.
Where we engage third parties to process personal data, we ensure they comply with GDPR and have appropriate safeguards in place.
All staff involved in data processing activities receive regular training on GDPR compliance.
This policy will be reviewed annually or when significant changes occur in data processing practices or relevant regulations.