Skip to main contentSkip to footer

GDPR Compliance

European General Data Protection Regulation

GDPR Commitment

EGM System is fully committed to protecting the privacy and rights of all EU citizens. We comply with the General Data Protection Regulation (GDPR) and have implemented comprehensive measures to ensure your data is processed lawfully, fairly, and transparently.

Your GDPR Rights

Right to Information

You have the right to be informed about how your personal data is collected, used, and shared.

Right of Access

You can request access to your personal data and receive a copy of the data we process about you.

Right to Rectification

You can request correction of inaccurate or incomplete personal data.

Right to Erasure

You have the right to request deletion of your personal data under certain circumstances.

Right to Restrict Processing

You can request limitation of processing your personal data in specific situations.

Right to Data Portability

You can request your data in a structured, machine-readable format for transfer to another service.

Lawful Basis for Processing

Contract Performance

We process your data to provide our automotive service management platform and fulfill our contractual obligations to you.

Legitimate Interest

We may process data for legitimate business interests, such as improving our services, security monitoring, and customer support.

Consent

For marketing communications and optional features, we obtain your explicit consent before processing your data.

Legal Obligation

We process data when required by law, such as for tax reporting, regulatory compliance, or legal proceedings.

Data Protection Measures

Encryption

End-to-end encryption for all data transmission and storage

Access Control

Role-based access with multi-factor authentication

Monitoring

24/7 security monitoring and audit logging

Data Retention

Data TypeRetention PeriodLegal Basis
Account InformationDuration of subscription + 7 yearsContract + Legal obligation
Transaction Records7 yearsLegal obligation
Usage Analytics26 monthsLegitimate interest
Marketing DataUntil consent withdrawnConsent
Support Tickets3 yearsLegitimate interest

International Data Transfers

Adequacy and Safeguards

When we transfer personal data outside the EU/EEA, we ensure appropriate safeguards are in place:

  • • Transfers to countries with adequacy decisions from the European Commission
  • • Standard Contractual Clauses (SCCs) approved by the European Commission
  • • Binding Corporate Rules for intra-group transfers
  • • Certification schemes and codes of conduct

Data Breach Notification

Supervisory Authority

We will notify the relevant supervisory authority within 72 hours of becoming aware of a data breach.

Unless the breach is unlikely to result in a risk to rights and freedoms.

Individual Notification

We will notify affected individuals without undue delay if the breach is likely to result in high risk.

Notification will include nature of breach and measures taken.

Exercising Your Rights

How to Submit a Request

Contact Methods

  • • Email: info@egmsys.com
  • • Phone: +971 524 501 304
  • • Online form (coming soon)
  • • Written request by post

Response Times

  • • Acknowledgment: Within 72 hours
  • • Response: Within 30 days
  • • Complex requests: Up to 60 days
  • • Urgent requests: Within 24 hours

Identity Verification: To protect your privacy, we may need to verify your identity before processing your request.

Data Protection Officer

Contact Information

Name: To be assigned

Email: info@egmsys.com

Phone: +971 524 501 304

Address: EGM System Solutions
United Arab Emirates

Responsibilities

  • • Monitor GDPR compliance
  • • Conduct privacy impact assessments
  • • Serve as contact point for supervisory authorities
  • • Provide data protection training
  • • Handle privacy-related inquiries

Supervisory Authority

You have the right to lodge a complaint with a supervisory authority if you believe we have not handled your personal data in accordance with GDPR.

Lead Supervisory Authority: Irish Data Protection Commission (DPC)

Website: www.dataprotection.ie

Email: info@dataprotection.ie

Phone: +353 57 868 4757

Updates to This Policy

We may update this GDPR compliance information from time to time. Any changes will be posted on this page with an updated revision date. For significant changes, we will provide more prominent notice or obtain consent where required by law.

Last Updated: Loading...