私たちはお客様のプライバシーを真摯に受け止めています
私たちはお客様のプライバシーを真摯に受け止めています
プライバシー通知
発効日:2026年8月
お客様のプライバシーは、SoftwareOneおよびその関連会社(以下、総称して「SoftwareOne」、「当社は」、「当社を」、「当社の」といいます)にとって重要です。本プライバシー通知では、当社がお客様に関してどのような個人データを使用するか、どのように使用するか、およびお客様のデータ保護に関する権利について説明しています。
当社が利用する個人データの種類およびその利用方法は、お客様との関係によって異なります。そのため、本プライバシー通知の一部がお客様に無関係な場合や、本プライバシー通知の複数の部分がお客様に適用される可能性があります。
当社がお客様の代理としてデータ処理者としての立場で個人データを処理する場合、本プライバシー通知は適用されませんので、ご留意ください。このような場合、個人データの処理については、当社とお客様(データ管理者)との間で締結された別途の契約が適用されます。
本プライバシー通知は、当社が運営または管理していない他のWebサイトへリダイレクトするリンクが含まれている場合、そのWebサイト上でお客様が提供した個人データの処理については、当該Webサイトの提供者が責任を負うことになりますので、ご注意ください。また、当該Webサイトのプライバシー通知を必ずご確認いただくことをお勧めします。そのような状況下では、当社はお客様の個人データがどのように利用、処理されているかについて管理することができないため、当該プロバイダーによるお客様の個人データの利用について責任を負いません。
当社について
お客様のデータ処理の責任を担う管理者は、お客様がWebサイトの閲覧、サービスの利用、イベントへの登録、または求人への応募などを通じて関係を築いたSoftwareOneの事業体(以下、「データ管理者」といいます)となります。SoftwareOneの事業体に関する詳細は こちらをご覧ください。
当社がお客様の個人データ(お客様から直接提供されたもの、お客様が代表を務める企業から提供されたもの、またはその他の場合において第三者から直接提供されたもの)を受け取った場合、以下の目的および法的根拠に基づき、当該データを処理する場合があります。
ユーザー アカウントの作成および管理
当社のWebサイト、プラットフォーム、アプリケーション、その他の製品やサービスを安全に利用するためには、ユーザーアカウントの登録および維持が必要となる場合があります。当社は、お客様がこれらのアカウントに登録される際、およびこれらのアカウントの認証、管理、メンテナンスの際に、お客様の個人データを処理します。
お客様が当社のWebサイト、プラットフォーム、アプリケーション、その他の製品やサービスをお試しいただくためにデモアカウントまたはトライアルアカウントを作成される場合、当社はお客様の個人データを収集し、アクセスの認証、一時的なサービス機能の提供、ご利用状況の監視、およびデモアカウントやトライアルアカウントに関して連絡するために当該データを利用する場合があります。
当社のWebサイト、プラットフォーム、アプリケーション、またはその他の製品やサービスにおいて、個人データの収集および処理の理由や方法について説明した別のプライバシー通知が参照されている場合は、そちらのプライバシー通知をご確認ください。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、登録日時、ログイン情報、利用データ、活動データ。
お客様の個人データを処理する法的根拠は、お客様との間で締結した契約であり、これにより、当社はお客様のアカウントの開設、管理、および維持を行うことができます。
要請への対応
当社は、チャット機能、お問い合わせフォーム、またはその他の方法を通じて提示された要請を処理する上で、お客様と連絡を取るために、個人データを収集します。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、住所、国、お問い合わせの内容、お問い合わせ日、その他お客様が自発的に当社に提供される可能性のあるデータ。.
お客様の個人データの処理に関する法的根拠は、該当する場合は当社がお客様に対して負う法的義務または契約上の義務の履行であり、それ以外の場合は、お客様とのやり取りを管理すること、およびお客様にご満足いただけるサービスおよび体験を提供することに対する当社の正当な利益です。
投稿およびコメント
当社 Web サイト、プラットフォーム、アプリケーション、ならびにその他の製品およびサービスに投稿やコメントをすることが可能です。この場合、内容は公的にアクセスが可能になります。投稿やコメントは公開前に手動で審査を行う場合があり、表示されるまでに遅れが生じる場合がありますので、ご留意ください。氏名または別名が提供された場合、その名前が投稿やコメントの横に表示されます。
関連する個人データ: 氏名または別名、投稿やコメントの内容、日時、その他お客様が自発的に当社に提供されたデータ。
お客様の個人データを処理する法的根拠は、お客様とのやり取りを管理すること、および当社の製品やサービスを改善することに対する当社の正当な利益です。
ニュースレター
お客様は、IT業界の最新トレンドや注目情報、新製品および新サービス、今後のイベント、特別オファー、IT意思決定者向けの重要な日程などをお届けするニュースレターにご登録いただけます。
ご登録の際には、メールアドレスの入力が必要となります。一部の地域では、登録フォームへの入力が完了した後、確認メールをお送りする場合がございます。この場合、お客様が確認メールのリンクがクリックされるまで登録は有効になりません。
ニュースレターに登録すると、当社がニュースレターに個別のトラッキング技術を組み込む場合があります。これにより、当社はお客様に送信されたニュースレターがいつアクセスまたは開封されたかを把握できたり、ニュースレター内のリンクを個別に管理し、お客様がどのリンクをいつクリックしたかを特定することができます。
当社のニュースレターの購読は、いつでも解除することができます。各メールの最後にある購読解除リンクをお使いいただくか、info.global@softwareone.com までメールでご連絡いただくだけで解除が完了します
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、国、エンゲージメント指標(ニュースレターの開封の有無、開封日時、ニュースレターへのアクセス回数、クリックされたリンクなど)。
お客様の個人データの処理の法的根拠は、ニュースレターの受信に対するお客様の同意です。
マーケティング
マーケティングの目的で、お客様が見込み顧客を含む当社の顧客またはパートナー企業に代わって当社とやり取りを行う際、当社はお客様の個人データを収集します。また、当社は、当社のマーケティングコミュニケーションにおいて当該情報を利用するために、そのような情報を共有することが法的に認められている認証済みの第三者プロバイダーから個人データを受け取る場合があります。当社は、お客様が関心をお持ちになりそうな今後のイベント、製品、サービス、およびオファーに関する情報のご案内など、マーケティング目的で当該個人データを処理します。
さらに、当社は、IPアドレス情報や、メールの開封状況、リンクのクリック数といったエンゲージメント指標を自動的に収集するために、個別のトラッキング技術を使用する場合があります。これらの情報は、パフォーマンスの監視や、マーケティング活動の関連性および効果の向上を目的として利用されます。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職名、会社名など)、ならびにお客様が当社に提供されたその他のデータ。
お客様の個人データの処理の法的根拠は、お客様の同意、またはマーケティングに関連したご案内をお送りすることに関する当社の正当な利益です。
ライセンスおよび技術使用状況の分析
当社は、お客様との取引関係において、ライフサイクル全体を通してお客様のニーズをより深く理解し、管理し、サポートするために、ソフトウェアライセンスや技術の利用環境に関する情報を処理する場合があります。
お客様が当社に対して自社の技術環境へのアクセス権を付与した場合、または当社もしくは承認済みのサードパーティツールを導入された場合、当社は関連するプラットフォームまたは技術の範囲内において、ライセンスの種類、ライセンスの割り当て状況、および利用状況を把握する場合があります。これには、当社を通じて取得したライセンスや、アクセスが許可されている他のプロバイダーから取得したライセンスが含まれる場合があります。
当社は、この情報をライセンスや利用状況の最適化、サービス利用資格の確認、ユーザー数またはライセンス数に基づいて提供、課金されるサービスの管理、および顧客全体の利用動向に関する集計分析のために利用します。これらの分析は、新製品や新サービスの開発、既存サービスの改善、および関連するビジネスチャンスの発見にも役立つ場合があります。
当社は、お客様によって付与されたアクセス権限の範囲、または適用される契約上の取り決めの範囲を超えて、ライセンス情報や利用状況データにアクセスしたり、これらを処理したりすることはありません。
関連する個人データ:ユーザーまたはデバイスの識別子、ライセンスの割り当ておよび利用データ、サービス利用状況の指標、および関連する技術的メタデータ。
このような個人データ処理の法的根拠は、当社の製品およびサービスの管理および開発、関係のライフサイクル全体にわたるお客様のサポート、および当社の商業活動の実施、ならびに該当する場合の契約上の義務の履行における当社の正当な利益です。
Cookie およびその他同様の技術
お客様が当社のWebサイト、プラットフォーム、アプリケーション、およびその他の製品やサービスをご利用になる際、当社はCookieや同様の技術を使用する場合があります。Cookieは、アクセスしたWebサイトによってデバイスに保存される小さなテキストファイルです。これらは、Webサイトがお客様の設定、ログイン情報、および閲覧アクティビティを記憶し、よりパーソナライズされた効率的でシームレスなオンライン体験を提供する上で役立ちます。また、Webサイトのトラフィックを分析したり、ユーザーセッションを管理したり、お客様の関心に合わせてコンテンツを調整したりするために一般的に使用されます。
必要不可欠なCookie
これらのCookieは、Webサイトの機能に不可欠なものであり、無効にすることはできません。
機能性Cookie
これらのCookieにより、フォント、ビデオ、マップ、ソーシャルプラグイン、埋め込みサービスなどの追加機能やサードパーティのコンテンツが有効になります。
分析およびマーケティングCookie
これらのCookieは、ユーザーがどのようにWebサイトを操作しているかを把握し、広告およびマーケティング活動を支援するのに役立ちます。
当社がこれを利用する目的の一つは、お客様の利用データを処理し、お客様が当社のWebサイト、プラットフォーム、アプリケーション、その他の製品やサービスをどのように利用し、どのように関与しているかを分析することで、お客様のオンライン体験を向上させるためです。また、当社は、Webサイトの利用状況を分析し、機能性を向上させるために、サードパーティ製のツールを使用して匿名化されたセッション記録を作成する場合があります。これらの記録には個人データは含まれておらず、プライバシーを確保するために機密項目はマスクされています。
また、当社はWebサイト外でもターゲット広告を表示し、広告の効果を測定するために、クロスデバイストラッキング技術を使用する場合があります。当社のCookieバナーに記載されているサードパーティプロバイダー(非必須Cookieが有効になっている場合)は、お客様のブラウザまたはデバイスにアクセスし、IPアドレスを分析し、認識特性を保存または読み取り、またはトラッキングピクセルにアクセスする場合があります。これらの特性は、他のWebサイトでお客様の端末を識別するために使用される場合があります。お客様のユーザーデータを使用してサードパーティのプロバイダーに登録されると、異なるデバイス(ノートパソコン、スマートフォン、タブレットなど)間の認識特性がリンクされる場合があります。これにより、プロバイダーはデバイス間の広告キャンペーンを管理することができます。
また、当社は、Webサイトの適切な設計やリピーターの特定を行うために、Web解析ツールを利用する場合があります。これらのツールは、仮名に基づいて使用状況ファイルを生成し、 Cookieバナーに記載しているとおりCookieに依存しています。
さらに、当社は、当社のサーバーに保存されていない特定のサービスを当社のWebサイトに埋め込んでいます。例えば、マップを使用されたり、または動画を視聴されることで、SoftwareOne事業体の正確な所在地を確認することができます。一部の地域において、当社は、埋め込みコンテンツのある当社 Web サイト、プラットフォーム、アプリケーション、ならびにその他の製品およびサービスへのアクセスは、サードパーティプロバイダーに情報を自動的に提供せず、ローカル保存されたサムネイルのみを表示する場合があります。この場合、サードパーティプロバイダーのコンテンツは、Cookieバナーを通じて同意をいただいた後にのみ読み込まれます。このコンテンツが閲覧されると、当社 Web サイトへの訪問、ならびにこのサードパーティプロバイダーサービスに必要な使用状況データに関する情報がサードパーティプロバイダーに送信されます。当社は、サードパーティプロバイダーによって実行される追加のデータ処理に対して何の影響力も有しません。
当社の Cookieバナー は第三者によって提供されており、当社が使用するCookieの一覧(提供元を含む)を表示しています。デフォルト設定では、必要不可欠なCookieのみが有効になっています。で、追加のCookieの設定を許可するか否かを選択することができます。Cookieバナーで、いつでも設定を変更することができます。
関連する個人データ:IPアドレス、デバイスとブラウザの情報、セキュリティとボットの検出シグナル、Cookieの同意設定、Webサイトの対話データ(例:ビデオビュー、マップの使用、埋め込みコンテンツの相互作用)、IPアドレスから得られたおおよその位置、技術要求とパフォーマンスデータ、訪問したページと閲覧行動(クリック、スクロール、ナビゲーションパスなど)、ページ滞在時間とセッション期間、Cookie識別子と広告ID、コンバージョンとエンゲージメントイベント(フォームの送信、対話など)、マーケティングとキャンペーンのパフォーマンスデータ。
必要不可欠なCookieに関するお客様の個人データ処理の法的根拠は、お客様にWebサイト、プラットフォーム、アプリケーションを表示するための当社の正当な利益です。非必須Cookieおよび類似の技術に関しては、その法的根拠はお客様の同意となります。
デジタル製品およびサービスにおける人工知能の活用
また、当社は、生成AIを含む人工知能(以下、「AI」といいます) ツールを、当社のWebサイト、プラットフォーム、アプリケーション、その他の製品やサービスとのやり取りをサポートするために利用する場合があります(例:チャットアシスタントの機能提供、コンテンツの翻訳や要約、表示内容のパーソナライズ、投稿やコメントのモデレーション、製品機能の提供や改善など)。AIの出力がお客様に重大な影響を及ぼす可能性がある場合は、人間によるレビューを行います。
お客様が当社の主要なソーシャルメディアページ(主なプロフィールは以下に記載しています)にアクセスされた際、当社はお客様の個人データを処理する場合があります。
- LinkedIn: https://www.linkedin.com/company/SoftwareOne
- X: https://x.com/SoftwareOne, https://x.com/SWO_Careers
- Facebook: https://www.facebook.com/Softwareone/, https://www.facebook.com/softwareonecareers
- Instagram: https://www.instagram.com/softwareone/, https://www.instagram.com/swocareers/
- YouTube: https://www.youtube.com/SoftwareOne-global
- Tik Tok: https://www.tiktok.com/@swocareers?_r=1&_t=ZN-94SU63n1PIl
当社および当該ソーシャルメディアページの運営者は、お客様の個人データの処理について連帯責任を担います。この点に関して、ソーシャルメディアページの提供者は、お客様の個人データ処理活動の目的と手段も決定します (当社は限定的な影響力のみを有します)。
当社ソーシャルメディアのページに投稿されたデータ (コメント、動画、画像、いいね、公開メッセージなど) は、当該ソーシャルメディア ページのプロバイダーによって公開され、当社がその他の目的で使用することはありません。ただし、必要に応じて、当社はコンテンツを削除する権利を留保します。当社は、当該ソーシャルメディアフィードに機能があれば、お客様のコンテンツを当社のWebサイト上で共有したり、ソーシャルメディアページを通じてお客様と連絡を取る場合があります。
ソーシャルメディアページを通じて当社に要請を送信された場合、当社は、要請内容に応じて、確実に機密性が守られる安全な通信チャネルをご案内いたします。お客様は、ご案内した他のチャネルを通じて、機密要請を当社に随時送信することが可能です。お客様の個人データの特定の処理活動に対して異議を申し立てたい場合は、「連絡先情報」の項目に記載された方法にて、当社までご連絡ください。当社は、お客様のご要望を検討し、対応が可能かどうか、また当該処理活動に対して当社に何らかの影響力があるかどうかを判断します。これ以外の場合は、当該のソーシャルメディアページのプロバイダーに直接ご連絡ください。
当社は、広告目的で当社ソーシャルメディア ページを使用します。使用の際、当社は、各ソーシャルメディアページのプロバイダーから提供されるデモグラフィック、関心事ベースまたは行動ベース、ロケーションベースの対象グループ特性を使用します。当社がデータ処理に影響を与えられる範囲は限られており、各ソーシャルメディアページのプロバイダーが当社に提供する統計情報を無効にすることはできません。
当社は個々のソーシャルメディアチャネルに対してコンバージョントラッキングのオプションを使用します。この目的のために、当社は対応するピクセルまたはタグを当社のWeb サイトに実装し、コンバージョンデータを収集します。Cookieバナーから、このような非必須Cookieを許可するかどうかを設定したり、設定を変更したりすることができます。
当社は、ソーシャルメディア活動(例えば、キャプションの草案作成や翻訳、ビジュアルコンテンツの生成や調整、自社ページへのコメントモデレーション、集約された形でのエンゲージメントの分析など)を支援するために、生成AIを含むAIツールを使用することがあります。コンテンツは公開前に当社のチームによってレビューが実施されます。ソーシャルメディアプロバイダー自身が提供するAI機能については、引き続き各事業者のプライバシー通知が適用されます。
ソーシャルメディア ページのプロバイダーによるデータ処理
ソーシャルメディアページのプロバイダーは、Web トラッキングのメソッドを使用します。Web トラッキングは、ソーシャルメディアプラットフォームのアカウントにログインしているかどうかに関係なく行われる可能性があります。前述のとおり、ソーシャルメディアページのプロバイダーが実施するWebトラッキングに対しては当社では管理できず、それらのトラッキング機能を停止または無効化することはできません。なお、当該ソーシャルメディアページのプロバイダーは、お客様のプロフィールや行動データを利用して、お客様の習慣、人間関係、嗜好を分析する場合がありますのでご留意ください。当社は、関連するソーシャルメディアページのプロバイダーによるデータ処理に対して、影響力を有しません。
ソーシャルメディアページの個人データ処理に関する詳細は、以下の各プロバイダーのプライバシー通知を参照してください:
- LinkedIn: https://www.linkedin.com/legal/privacy-policy
- X: https://x.com/en/privacy
- Facebook: https://www.facebook.com/privacy/explanation
- Instagram: https://help.instagram.com/155833707900388
- YouTube: https://policies.google.com/privacy?hl=en
- TikTok: https://www.tiktok.com/legal/page/us/privacy-policy/en
関連する個人データ:名前、会社、メールアドレス、国、およびお客様が自発的に当社に提供されたその他の情報。
お客様の個人データを処理する法的根拠は、ソーシャルメディアプラットフォーム上で当社のブランド、サービス、および製品を宣伝、プロモーションすること、ならびにマーケティング活動の効果と関連性を高め、マーケティング全体のパフォーマンスを向上させるという当社の正当な利益にあります。同様に、当社は広報およびコミュニケーション活動に対してもお客様の個人データを処理します。また、当社は、非必須Cookieの利用に際してお客様の同意に基づいて運用しています。お客様は、Cookieバナーを通じて、いつでもその設定を変更することができます。
当社の製品またはサービスの購入および使用
当社は、当社の製品またはサービスの購入およびご利用を円滑にするために、お客様の個人データを処理する場合があります。このような個人データは、お客様ご自身、あるいは関連する顧客、サプライヤー、ビジネスパートナーから当社に直接提供される場合があります。
当社は、提供する製品またはサービスに応じて、2つの異なる立場で個人データを処理します:
- 特定の製品またはサービスについて、当社は個人データの処理の目的および手段を独自に決定します。
- その他の製品やサービスについて、当社は顧客の代理としてデータ処理者として業務を行います。このような場合、具体的な処理活動については、当社と顧客との間で締結された該当するデータ処理契約に詳細が記載されています。
この処理により、当社はお客様およびお客様が代表する企業との関係を管理・運営することが可能となります。これには、契約の交渉および締結、ならびに価格情報の提供が含まれます。
また、当社は、当社の製品またはサービスの提供にあたり、サイバーセキュリティ上の脅威の検知、調査および対応を目的として、一定のデータを処理する場合があります。これには、システムの監視、セキュリティイベントの分析、およびお客様の環境に影響を及ぼす可能性のあるインシデントへの対応が含まれます。
当社の製品またはサービスを購入する前に、デモアカウントまたはトライアルアカウントを作成して利用する場合、当社はお客様の個人データを収集し、それを用いてアクセス認証の実施、一時的なサービス機能の提供、製品またはサービスの利用状況の監視、および当該デモまたはトライアルアカウントに関するご連絡を行う場合があります。
当社は、市場調査や満足度調査を実施する場合があります。これは、お客様の当社の製品またはサービスに対するご利用体験、関心、およびフィードバックをより深く理解するとともに、それらを継続的に改善し、さらに当社が管理するお客様、ビジネスパートナーおよびその他の関係者との関係性を向上させることを目的としています。この場合、お客様はこのような処理に対して異議を申し立てる権利を有します。お客様の権利行使についての詳細は、「連絡先情報」のセクションをご覧ください。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、ログイン認証情報、登録日時、利用データ、システムおよびセキュリティログ(認証ログ、ネットワークトラフィックのメタデータ、エンドポイントのテレメトリなど)、IPアドレス、デバイス識別子、デバイスおよびアプリケーション情報(ホスト名、オペレーティングシステムの詳細、アプリケーション利用に関するメタデータなど)、インシデント関連データ(疑わしい悪意ある活動に関連するファイル、メモリデータ、ログなど)、ならびに当社の製品またはサービスの購入および利用に際してお客様が自発的に提供するその他のデータ。
お客様の個人データの処理に関する法的根拠は、お客様が法的に代表する法人との間で締結する契約の管理、締結、および履行を通じて、当社の製品またはサービスを販売するという当社の正当な利益です。当社は、市場調査や調査を実施する際、およびお客様のデモアカウントを作成する際にも同じ法的根拠に基づいており、お客様に(見込み顧客の法的代理人として) 当社の製品またはサービスのプレビューを提供することができます。
製品およびサービスの改善
当社の製品またはサービスをご利用いただく際、当社は統計分析や改善を目的として、お客様の個人データを処理する場合があります
関連する個人データ:氏名、メールアドレス、IPアドレス、閲覧したコンテンツ、アクセス日時、通信量、アクセス状況、Webブラウザおよびオペレーティングシステム、どのWebサイトからアクセスしたかを示すリファラーリンク。
お客様の個人データを処理する法的根拠は、当社の全体的な業績を把握し、製品やサービスを改善すること、ならびにお客様が当社をご利用になる際の体験を向上させることに対する当社の正当な利益です。
顧客の信用調査
当社は、契約を締結する前に、お客様の信用調査を行うために個人データを処理する場合があります。これは、継続的な取引関係の中で財務リスクを管理するためです。これには、取引を可能にする前に、エンタープライズリソースプランニング (ERP) システム内の顧客情報と与信限度額の内部検証が含まれる場合もあります。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、財務履歴、信用スコア、支払い状況、未払い債務、識別番号(VAT番号や会社登録番号など)、信用情報機関から提供されたデータ (お客様個人に関連する場合) 。
お客様の個人データを処理する法的根拠は、信用力を評価し、当社の財務上のリスクを最小限に抑えるという当社の正当な利益です。
デューデリジェンスとスクリーニング
取引を行う前に、当社は、当社の顧客、ビジネスパートナー、またはその他の関係者を代表してお客様が当社と連絡を取る場合、デューデリジェンスやスクリーニングを実施するために、お客様の個人データを処理する場合があります。当社のデューデリジェンスまたはスクリーニング活動には、適用される法律で認められる範囲において、セキュリティ、プライバシーおよび信頼性に関する確認が含まれる場合があります。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、その他お客様が自発的に当社に提供したデータ。
お客様の個人データを処理する法的根拠は、お客様の会社が適格であることを確認すること、および関連するリスクを効果的に管理することに対する当社の正当な利益です
顧客とパートナー企業のエンゲージメントにおけるAIの使用
当社は、商業および業務上の活動を支援するために、生成AIを含むAIツールを使用する場合があります(例:コミュニケーションの作成および個別化、会議やメールのやり取りの要約、翻訳、アカウント情報の分析、サポートリクエストの仕分けおよび対応、提案書や契約書の作成支援など)。ただし、お客様に重大な影響を与える可能性のある出力については、人間によるレビューを行います。法的またはそれに類する重大な影響を及ぼす決定については、適用される法律で認められている場合を除き、完全に自動化された手段のみによって行われることはありません。
イベントの登録と管理
当社は、当社または当社のパートナー企業が主催し、お客様が参加を希望するセミナー、ウェビナー、トレーニングセッション、オンライン会議その他のイベント(以下、「イベント」といいます)の実施、運営およびご連絡のために、お客様の個人データを処理する場合があります。
このプロセスにおいて、当社は外部のサードパーティプロバイダー(ビデオ会議サービス、通信事業者など)の支援を受ける場合があり、その際にはお客様の個人データを当該プロバイダーと共有する場合があります。
また、イベントの録画を行う場合もあります。詳細は、以下の映像コンテンツのセクションをご覧ください。
また、当社は、イベントをより効果的に改善、拡充するためにお客様にアンケートをお送りする場合もありますが、ご回答は任意です。
イベントがオンラインではなく、ご来場が必要な場合は、別途公開されるイベントのプライバシー通知をご参照ください。同通知には、当該イベントに関連して当社がお客様の個人データをどのように処理するかについての詳細が記載されています。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、ミーティング名または別名、IPアドレス、デバイス/ハードウェア情報(MACアドレス、バージョンなど)、テキスト、音声および動画データ、接続情報(電話番号、国名、開始時刻および終了時刻など)、ならびに登録手続き中またはイベント開催中にお客様が自発的に当社に提供されたその他のデータ。
お客様の個人データを処理する法的根拠は、当社のイベント運営や活動に関する広報を行うこと、およびイベント全体の成果を把握し、評価し、改善するためにアンケートを送付することに対する当社の正当な利益です。
映像コンテンツ
当社または当社のパートナー企業が主催するイベントにおいて、参加者の写真撮影や動画撮影(以下、「映像コンテンツ」といいます)を行う場合があります。このような映像コンテンツには、お客様や参加者グループ、あるいはステージ上の講演者や参加者などが映り込む場合があります。当社は、これらの素材を当社のWebサイト、ソーシャルメディア、またはその他のデジタル媒体や印刷媒体に掲載する場合があります。このような映像や写真に写りたくない場合は、撮影者またはイベント主催者までお知らせください。また、対面イベントの際には、写真や動画の撮影中に写り込まないようにされることをお勧めします。
参加者の個別の映像コンテンツに関しては、個人データの処理について別途ご案内し、処理を行う前にお客様の同意を求めます。
お客様には、かかる処理に異議を申し立てる権利、または事前に同意を得ている場合にはその同意を撤回する権利があります。当社は、お客様の要求に応じるために合理的な努力をいたしますが、ソーシャルメディアプラットフォームを含むインターネットに投稿された情報は、世界中でアクセス可能になり、当社に関係のない、または当社の管理下にない他の第三者によって容易にコピーされ、配布される可能性があることは周知されています。したがって、当社が削除した情報に対しても、インターネット上で引き続き閲覧可能となる場合があります。さらに削除を希望される場合は、各インターネット検索エンジンまたはソーシャルメディアのプロバイダーへ直接ご連絡ください。
お客様の画像が印刷物(チラシ、雑誌、ニュースレターなど)に使用されている場合、その画像を削除するのに過度の労力を要すると判断された場合、すでに印刷された部数が使い切られるまで、当該印刷物の使用が継続される場合があります。お客様の画像は、新たに印刷されるものには使用されません。
関連する個人データ:写真、動画、音声記録、および当社が収集または提供を受けたその他の生体データ。
お客様の個人データの処理に関する法的根拠は、当社のイベント運営および活動に関する広報を行うことに対する当社の正当な利益です。ただし、個別の映像コンテンツを配信する場合はこの限りではなく、その場合、当社はお客様の同意に基づいて処理を行います。
イベントにおけるAIの利用
当社は、イベントの運営、記録、改善を行うため、AI機能(当社またはイベント・ビデオ会議プロバイダーが提供するもの)を活用し、ライブまたはイベント終了後の文字起こし、要約、メモ、ハイライトの作成、ライブ字幕やリアルタイム翻訳の提供、Q&Aやチャットのサポート、および集計データによるエンゲージメント分析を行う場合があります。文字起こし、要約、または録音を行う場合、当社はイベントの開始時にその旨をお知らせし、必要に応じてお客様に同意を求めます。
当社は、求人に関連して、お客様から直接、または一般にアクセス可能な情報源(オンラインの専門ネットワーク、ソーシャルメディアサイト、求人サイトなど)を通じて、あるいは第三者(人材サービス事業者、大学、人材紹介会社、紹介者、税務・社会保険当局、その他の関連当局など)から取得したお客様の個人データを処理する場合があります。
当社は、以下の目的でお客様の個人データを処理する場合があります:
- 当社の応募システムにお客様のアカウントを作成するため。
- AIシステムを活用して、ご提供いただいた履歴書やその他の書類を評価するとともに、必要に応じて、応募者のスキル、経験、資格を評価するため。
- 面接を設定し、評価を実施するため。
- 法律で認められている場合、または義務付けられている場合、採用内定の条件として、経歴確認またはソーシャルメディア上の公開情報の確認を行うため。
- 応募の進行状況について連絡するため。
- 状況に応じて、採用活動中に発生した旅費を経費として支払うため。
- 採用が内定した場合に向けて、応募書類を人事ファイルに保管し、応募者と雇用関係を締結するため。
- 関心事やスキルに基づく求人のお知らせおよび採用活動の最新情報を提供するため。
- 採用プロセスの改善などを目的として、アンケート調査を実施するため。
当社の求人に応募される際は、応募書類には当該求人に関連する情報のみを記載してください。特定の応募に対して、当社は、雇用機会均等および法的報告要件を満たすために、任意ベースで特定の人口統計情報(性別、人種・民族、国籍など)をお願いする場合があります。この情報は選考プロセスの一部ではなく、採用決定に影響を与えるものではありません。
職種によっては、採用プロセスの一部を支援するため、サードパーティプロバイダーが提供するテクノロジーを活用した評価ツールや採用ツール(ビデオ面接プラットフォーム、構造化評価、職務シミュレーション、AIを活用した選考ワークフローなど)を利用する場合があります。これらのツールは、応募情報を構造化された形で収集したり、面接や評価のスケジュールを組んで実施したり、職務に関連するスキルを検証したり、採用担当者の審査を支援するための構造化された要約や洞察を生成したりするのに役立つ可能性があります。職種や使用するツールによっては、履歴書や応募書類の審査、構造化された質問(テキスト、音声、および/または動画形式)への回答依頼、ならびに採用担当者向けの要約、スコア、または適性評価指標の作成などが含まれる場合があります。これらの分析結果は、意思決定の補助として使用され、採用担当者は関連情報を確認し、採用判断を行う責任を負います。特定の評価手順が任意で提供される場合、当社はその旨を明示し、可能な限り代替手段を提供します。
当社は、AIを活用して、公開されている専門職向けネットワークや求人サイトから候補者を発掘したり、面接のスケジュール調整、面接内容の文字起こしや要約、応募書類の翻訳、採用担当者向けの連絡文書の作成を行う場合もあります。アウトプットは、採用担当者を支援するためのものであり、その代わりとなるものではありません。また、採用決定は自動化された手段のみによって行われることはありません。AIによる判定結果については、採用担当者に直接、または 「人工知能」のセクションに記載されている連絡先を通じて人間によるレビューを依頼することができます。
当社でアカウントを作成した後は、個人データの設定や電子メールの購読を変更することもできます。これらの機能は、ポータルアカウントダッシュボードで利用することができます。なお、ご都合の良い時にいつでも iCIMS.help@softwareone.com までご連絡いただければ、適切に対応いたします。/p>採用に至らなかった場合においても、将来的な採用機会にご関心がある可能性を考慮し、当社の個人データの長期保存に同意いただいた場合は、さらに2年間データを保持し、その後、適切に削除いたします。延長された保存期間に同意されなかった場合、当社は、適用される法律の規定に基づき、採用プロセスが終了してから6ヶ月以内に、応募者のデータを削除いたします。当然の権利として、 「お客様の権利」の項に記載されている通り、応募者はいつでも当社に対してデータの削除を請求することができます。
客様の個人データの処理の法的根拠は、以下の通りです:
- お客様のアカウントの作成、お客様の応募書類の審査、面接または審査の実施、経歴確認、および当社の求人ポジションを埋めるための採用プロセス全体の管理における当社の正当な利益。
- 採用プロセスを改善し、当社の全体的なパフォーマンスと効率性を向上させるための最善の方法を把握、評価するため、お客様にアンケートを送付することに対する当社の正当な利益。
- 法的請求が生じた際に、当社および当社のブランドを保護するために、自己防衛および権利を行使することに関する当社の正当な利益。
- 応募された求人への採用に至らなかった場合、お客様の個人データを長期間にわたり安全に保管することに対するお客様の同意。
- 必要に応じて、応募プロセスにおけるAIツールを利用すること(AIを活用した適性検査やビデオ面接)に対するお客様の同意。
- お客様との雇用関係を確立するための契約上の理由。
- 規制要件への準拠、苦情や懸念への対応、および必要に応じて自己防衛を行うための法的義務。
企業取引
当社は継続的に事業を発展させていく中で、様々な企業取引を行う可能性があります。そのため、当社の事業、資産、または株式の全部または一部について、再編、売却、合併、統合、合弁、譲渡、移転、その他の処分が提案または実施された場合(破産手続きや類似の手続きに関連する場合を含みます)、お客様の個人データが関連する第三者に開示または移転されることがあります。
関連する個人データ: 連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、アカウント認証情報、購入および取引記録、ならびに企業取引を円滑に進めるために必要なその他のデータ。
お客様の個人データ処理の法的根拠は、企業取引を実施し、事業継続を確保する上での当社の正当な利益です。
紛争解決
当社は、当社の法的権利を保護するため、請求を行使または防御するため、あるいは法的手続き(第三者が関与するものも含まれます)に参加するために、お客様の個人データを処理する場合があります。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、契約書類、通信記録、利用ログ、取引履歴、および係争事項に関連するその他のデータ。
お客様の個人データ処理の法的根拠は、当社の法的権利を擁護し、紛争を効率的に解決するという当社の正当な利益です。
法令遵守
当社は、適用される法令に基づく当社の義務を履行するため、お客様の個人データを処理し、公的機関、規制当局、または法執行機関(警察署、裁判所など)と共有する必要が生じたり、その義務を負う場合があります。また、当社はコンプライアンス上の義務の履行を支援するため、外部の監査人またはアドバイザーを起用する場合があり、その際には必要な範囲で個人データを当該者に提供します。これには、記録の保管、報告書の提出、または法律で定められた情報の開示が含まれる場合があります。適用される法律に基づき個人データの提供が義務付けられているか、あるいは公的機関からの要請に応じて提供することがあります。また、コンプライアンスの目的で、当社が自発的に必要な報告書を提出する場合もあります。
関連する個人データ:連絡先情報(氏名、メールアドレス、電話番号、役職、会社名など)、取引記録、通信履歴、口座の取引状況、およびコンプライアンス遵守を証明するために必要なその他のデータ。
お客様の個人データを処理する法的根拠は、当社が法的義務を遵守することです。
懸念事項の報告
SoftwareOneでは、最高水準の誠実性とコンプライアンスの維持に努めています。このコミットメントを支援するために、当社は、コンプライアンス、倫理的行動、またはその他の潜在的な不正行為に関する懸念を提起するための安全で機密性の高い報告チャネルSoftwareOne Integrity Lineを提供しています。SoftwareOne Integrity Lineは、懸念事項や違反の疑いについて報告を希望する社内の従業員も、外部の方も利用することができます(ご希望の場合、匿名での報告も可能です)。すべての報告は厳格な機密性をもって扱われ、報告の際に提供された個人情報は、本プライバシー通知、Integrity Lineに掲載されているプライバシーポリシー、および適用されるデータ保護法に従い、当該懸念事項の調査および解決を目的としてのみ処理されます。
関連する個人データ:内部通報者/報告者の個人データ(身元が開示されている場合)、これには、連絡先情報および報告の一環として提供されたその他の個人データが含まれます。本報告書に含まれる申し立ての対象となっている個人に関するデータ(氏名、メールアドレス、電話番号、住所、および関連する証拠書類など)。報告書に記載されている場合、または調査の過程で開示された場合、特別な個人データが収集される場合もあります。
個人データの処理の法的根拠は、以下の通りです:
- 安全な内部通報窓口を提供する義務を含む法的義務の遵守。
- 犯罪行為、義務違反その他の法令・規則違反を防止および検知するという当社の正当な利益に基づき、こうすることで、社内プロセスの適法性を確認し、当社の健全性、信用を保護するとともに、損害や責任リスクを防止する。
- 特別な種類の個人データが処理される場合、当社は、報告書の処理及び調査の実施に必要な場合に限り、適用されるデータ保護法に基づき許可された場合に限り、当該データを処理します。
セキュリティ分析
当社のWebサイト、プラットフォーム、アプリケーション、その他の製品およびサービスのセキュリティを維持し、不正利用や誤用を検知するために、当社はお客様の個人データを処理する場合があります。当社は、これを不正アクセスを検出および防止し、システムの整合性を確保し、サイバー脅威から防御することによって、デジタルインフラを保護するために行います。これには、当社のWebサイト、プラットフォーム、アプリケーション、その他の製品およびサービスの機密性、完全性、可用性を維持するためのアクセスログ、利用状況、その他の技術的要素の監視が含まれます。
関連する個人データ: IPアドレス、ログイン認証情報、デバイス識別子、ブラウザの種類、オペレーティングシステム、アクセス日時、アクティビティログ。
お客様の個人データ処理の法的根拠は、不正および誤用を検出し、当社のWebサイト、プラットフォーム、アプリケーション、またはその他の製品およびサービスが意図された目的のために使用され、侵入および侵害から保護されることを保証するという当社の正当な利益です。
人工知能
当社は、一部のビジネスで機械学習や生成AIを含むAIを活用しており、社内プロセスの効率化、サービスの向上および当社が提供するデジタル製品やサービス全般におけるイノベーションの推進などに役立てています。AIの使用方法は、状況によって異なります。AIは、人によるレビューを前提とした提案や支援のために利用される場合もあれば、比較的リスクの低い運用業務の一部を自動化するために活用される場合もあります。AIの利用が個人に関連する可能性がある場合、当社は透明性を確保することに尽力し、個々のケースに応じて明確な情報を提供します。
AIの使用に関する詳細情報を希望される場合、または懸念事項、安全でない出力、予期しないAIの動作が発生した場合は、 responsible-ai.global@softwareone.comまでお問い合わせください。
データの保持
当社は、収集目的を達成するため、または法的義務を遵守するために必要な限り、お客様のデータを保持します。これには、契約期間、法的報告義務、紛争解決や不正防止のために必要な保存期間、およびその他の規制上の要件などが含まれますが、これらに限定されません。当社がお客様の個人データを保持する正当な業務上の必要性がなくなった場合、当該データを匿名化してお客様と結び付けられないようにするか、適用される法令に従って安全に削除します。
データの取得者
本プライバシー通知に記載された目的を達成するために、当社はお客様の個人データを以下のとおり他の受領者に開示する場合があります。
SoftwareOneの関連会社:当社の国際的なグループ構造により、一部の部署および人物が、知る必要性に基づいて、個人データの処理を行う必要があります。すべてのグループ内のデータアクセスおよび移転に対して、当社は適用されるデータ保護要件を遵守しています。SoftwareOneグループ各社に関する詳細情報については、 こちら をご覧ください。
ITベンダーを含むサービスプロバイダー:当社は、ITベンダーを含む当社のWebサイト、プラットフォーム、アプリケーション、その他の製品およびサービスを支援するために利用するサービスプロバイダーに対して、お客様の個人データを開示します。これらの企業は、マーケティング、郵送・電子メール配信、税務・会計、決済・請求処理、監査、アンケート調査の実施、イベント管理、採用活動、カスタマーサービス、データ補完サービス、不正行為防止、営業支援、ウェブホスティングおよび分析サービスなどを提供しています。また、当社のシステム運用を支援するため、およびソフトウェアやデータ保存の目的で、お客様の個人データをITベンダーと共有する場合があります。当社は、サービスプロバイダーとの間で、お客様の個人データを保護するために必要な安全対策を盛り込んだ専用契約を締結しています。当社は、サービスプロバイダーとの間で、お客様の個人データを保護するために必要な安全対策を盛り込んだ専用契約を締結しています。
公的機関または政府機関:当社は、法執行機関、データ保護当局、税務当局、信用機関、債権回収業者、銀行、裁判所、またはその他の会社を含む公的機関および公的団体にお客様のデータを開示することがあります。これは、そのような開示に法的根拠があり、法的義務、規制、または契約を遵守する必要がある場合、または法的に強制される裁判所命令、行政または司法手続きに対応するためです。
法律顧問または同様の専門家:紛争、請求または裁判手続きに関連して、または当社の法令遵守を支援するために、当社を支援し、助言を提供し、または代理する必要がある場合、当社は、関連する法律専門家とお客様の個人データを共有する場合もあります。
共同マーケティングパートナー企業:当社は、お客様が登録されたイベント、ウェビナー、または懸賞の主催者、あるいは当社が共同マーケティング活動を行う他の第三者にお客様の個人データを提供する場合があります。
データ転送
当社は、本プライバシー通知に記載された目的を達成するために必要または要求される場合に限り、また、その範囲においてのみ、お客様の個人データを第三国(適用されるデータ保護規制に基づき追加的な保護措置が求められる国など)へ移転する場合があります。これは、当該データ移転について法的根拠が存在し、かつ適切なデータ移転の保護措置が実行されている場合に限ります。
これらの国際的なデータ移転を行う際、当社は、個人データの移転に先立ち、適用される法令で求められる適切な保護措置(個人データを移転する当事者間で締結された標準契約条項やデータ移転契約を組み込むことなど)を講じます。
データセキュリティ
お客様の個人データを保護するため、当社は適切な技術的および組織的措置を講じます。当社は、当社に代わってお客様の個人データにアクセスするサプライヤー、パートナー企業、その他の受領者に対しても同様の保護措置を講じていることを保証します。ただし、電子的な送信および保存のいかなる方法も100%安全ではなく、絶対的なセキュリティが保証される標準は存在しないことに留意する必要があります。当社のWebサイト、プラットフォーム、アプリケーション、またはその他の製品やサービスにアクセスするために特定の資格情報を使用する必要がある場合は、そのような資格情報を機密として保持し、他の誰とも共有しないようにしてください。
当社とのやり取りが安全ではないと思われた場合、またはお客様の個人データが侵害された可能性があると思われた場合は、直ちに it.security@softwareone.comまでご連絡ください。
お客様の権利
当社が個人データの処理する際、お客様は以下の法的権利を行使することができます:
- 個人データへのアクセスおよび個人データのコピーの取得。
- 個人データの修正または削除に対する請求。
- 一定の条件下において、個人データの処理に対する制限の要請。
- 個人データのポータビリティの要求。
- 個人データの処理に異議を申し立てる権利(特に、当該個人データが当社の正当な利益に基づき処理されている場合)。
- 個人データの処理が適用されるデータ保護法を違反していると思われる場合、監督当局への苦情の申立て当社は、お客様の懸念事項を監督当局に申し立てる前に対応させていただきたいと考えておりますので、まずは当社までご連絡ください。
なお、これらの権利は絶対的なものではなく、その行使が制限される場合がありますので、ご了承ください。そのような場合、当社は必ずお客様にその旨をお知らせし、ご要望に完全にお応えできない理由をご説明します。
連絡先
プライバシー通知や当社のデータ保護の取り組み、または追加情報の請求や苦情に関してご質問がある場合は、以下の連絡先までご連絡ください。
SoftwareOne | 法務 - データ保護部門
Eメール: data-protection.eu@softwareone.com
欧州連合、欧州経済領域、スイスおよび英国における当社のデータ保護責任者:
FIRST PRIVACY GmbH
Konsul-Smidt-Straße 88
28217 Bremen, Germany
上記以外の国や地域における当社のデータ保護責任者の連絡先情報は、 こちら をクリックしてください。
Supplements
This Supplement applies to individuals located in Latin America and the Caribbean (“LATAM”), in addition to the above Privacy Notice, and provides additional clarifications to certain region specific processing activities and legal requirements.
Applicability of Local Data Protection Laws
In Brazil, when personal data is processed or relates to individuals located in Brazil, such processing is carried out in accordance with the Brazilian General Data Protection Law (Lei Geral de Proteção de Dados Pessoais – “LGPD”, Law No. 13.709/2018).
In Mexico, the Federal Law on Protection of Personal Data Held by Private Parties (LFPDPPP) is the key regulation governing data processing by companies and individuals in Mexico. Under the new law of 2025, the Anti-Corruption and Good Governance Secretariat is the entity responsible for supervising and enforcing the law.
In Ecuador we will process and treat your Personal Data in accordance with the provisions of the Organic Law of Personal Data Protection (LOPDP) and other relevant regulations issued by the Superintendence of Personal Data Protection. The consent required by the (LOPDP) will be provided by you in the manner established in the Privacy Notice for each type of relationship.
In Chile, we will process your data in accordance with Law Nº 19.628: Sobre Protección de la Vida Privada.
In Puerto Rico, we process your personal data in accordance with applicable laws of the Commonwealth of Puerto Rico and relevant United States federal privacy and data security laws, including, where applicable, data breach notification and consumer protection regulations. SoftwareOne implements appropriate technical and organizational measures to ensure the security and confidentiality of personal data in line with generally accepted privacy standards.
In the Dominican Republic, we will process and handle your personal data in accordance with the provisions of Law No. 172-13 on the Protection of Personal Data, as well as other applicable regulations. The required consent under Law No. 172-13 will be obtained in the manner described in this Privacy Notice, depending on the nature of the relationship and the processing activities involved.
In Jamaica, when your personal data is processed or if you are located in Jamaica, we will process such data in accordance with the Data Protection Act, 2020, and any applicable regulations issued by the competent authority. SoftwareOne ensures that personal data is processed lawfully, fairly and transparently, and that appropriate safeguards are in place, including for international data transfers.
In Trinidad and Tobago, we will process your personal data in accordance with the Data Protection Act, 2011, and applicable regulations issued by the Office of the Information Commissioner. Personal data will be processed in a manner that ensures its confidentiality, integrity and security, and in line with the purposes described in this Privacy Notice.
Legal Basis – Regular Exercise of Rights (Brazil)
Where applicable, personal data may be processed for the regular exercise of rights in judicial, administrative or arbitration proceedings, in accordance with Article 7, item VI of the LGPD, including proceedings governed by the Brazilian Arbitration Law (Law No. 9,307 / 1996).
Communications (Brazil)
Individuals located in Brazil may submit privacy‑related requests and receive responses in Portuguese.
In accordance with ANPD Resolution No. 18 / 2024, SoftwareOne ensures that communications with data subjects and the Brazilian Data Protection Authority (ANPD) are carried out clearly and precisely in Portuguese.
Local Social Media Presence (Brazil)
In addition to global social media channels, SoftwareOne maintains local social media presences, as follows:
- LinkedIn: https://www.linkedin.com/company/softwareone-latam/
- X: https://x.com/softwareone_br
- Facebook: https://www.facebook.com/SoftwareOneBrasil/
- Instagram: https://www.instagram.com/softwareone_br/
- YouTube: https://www.youtube.com/@softwareonebrasil
Processing of personal data in this context is subject to the respective platforms’ local privacy policies:
- LinkedIn: https://br.linkedin.com/legal/privacy-policy
- X: https://x.com/pt/privacy
- Instagram: https://help.instagram.com/155833707900388
- YouTube: https://policies.google.com/privacy
International Data Transfers (Brazil and Ecuador)
Personal data may be transferred to third countries, provided that international treaties have been signed with those countries that allow the transfer of data and do not contravene local legislation.
International transfers of personal data originating from Brazil are conducted in accordance with the LGPD and ANPD Resolution CD/ANPD No. 19 of December 18, 2024 (Regulation of the International Transfer of Personal Data) and SoftwareOne relies on legal mechanisms that ensure an adequate level of protection for your personal data.
International Transfers of personal data originating from Ecuador will comply with the provisions of the LOPDP and SoftwareOne will only transfer personal data to countries and territories that comply with the standards of protection required by Ecuadorian laws and regulations.
Data Protection Rights (Brazil)
Individuals subject to the LGPD have the following rights:
- confirmation of the existence of processing;
- access to their data;
- rectification of incomplete, inaccurate or outdated data;
- anonymization, blocking or deletion of unnecessary or excessive data or data processed in noncompliance with the LGPD;
- data portability upon express request;
- deletion of personal data processed with consent, to the extent permitted by law;
- information about public and private entities with which their personal data has been shared;
- information about the possibility of denying consent and its consequences;
- revocation of consent;
- upon request, obtain the full text of the clauses used to carry out an international data transfer, subject to trade and industrial secrets;
- lodge a complaint with a supervisory agency if they believe that the processing of their personal data infringes applicable data protection regulations.
In Brazil, the supervisory agency is the National Data Protection Agency (Agência Nacional de Proteção de Dados - ANPD).
Contact for data protection requests (Brazil and Ecuador)
In accordance with the LGPD and ANPD Resolution No. 18/2024, SoftwareOne has appointed a Data Protection Officer for Brazil. You may contact our DPO for any inquiries related to the processing of your personal data or to exercise your rights under the LGPD:
Vanessa Siqueira
data-protection.br@softwareone.com
The Data Protection Officer appointed for Ecuador (Encargado):
Nombre: Paul S Harris
Dirección: Ave. Naciones Unidas E699, Oficina 501. – Quito Ecuador
Teléfono: +593998325618
本補足資料は、SoftwareOne Japan株式会社またはお客様と関係を有するその他のSoftwareOneグループ企業(以下、個別または総称して「SoftwareOne」または「当社」といいます)、あるいはSoftwareOneのためにデータ処理を行う第三者によって、日本国内で収集された日本国内所在者の個人情報の取扱いに適用されます。本補足資料は、上記プライバシー通知の内容を補足するものです。当社は、個人情報の保護に関する法律、(平成15年法律第57号、以下、当該個人情報保護法を「APPI」といいます。)を遵守しています。
企業情報
本補足資料において、お客様の個人情報の取扱いに責任を負う事業者は以下のとおりです。
会社名:SoftwareOne Japan株式会社
所在地:〒107-0052 東京都港区赤坂2-5-8 ヒューリックJP赤坂ビル8階
代表取締役:長谷川 憲司(最高経営責任者)
個人情報
本補足資料における「個人情報」、「個人データ」およびその他の関連する用語は、本補足資料において別途定義されていない限り、APPIにおける定義に従って解釈されるものとし、以下のとおりとします。
- 「個人情報」とは、生存する個人に関する情報であって、次の各号のいずれかに該当するものをいいます。
- 氏名、生年月日その他の識別子又はこれらに準ずるものを含む情報(文書、図画又は電磁的記録に記載され、記録され、又は音声若しくは動作その他の方法により作成された事項(個人識別符号を除きます。)をいい、特定の個人を識別することができるものをいいます。以下(ii)項においても同様とし、(これには、他の情報と容易に照合することができ、それによって特定の個人を識別することができる情報が含まれます)、および
- 個人識別符号が含まれるもの、および
- 「個人データ」とは、個人情報データベースまたはこれに準ずるものに収録された個人情報をいいます。
利用目的
当社は、APPIで認められる場合、またはお客様の事前の同意がある場合を除き、上記のプライバシー通知に定めた利用目的を達成するために必要な範囲内でのみ、お客様の個人情報を取り扱います。
適正な取得
当社は、個人情報を適正な方法で取得し、欺瞞その他の不正な手段によって個人情報を取得することはありません。
安全管理措置
当社は、取り扱う個人データの漏えい、紛失または毀損を防止するために、組織的、人的、物理的、技術的な各側面において、必要かつ適切な安全管理措置を講じます。
共同利用
は、グループ会社間でお客様の個人データを共有し、共同利用する場合があります。
- 個人データの項目:上記のプライバシー通知に定める各場合における「関連する個人データ」の項目に記載のとおり。
- 共同利用者の範囲:SoftwareOne AGおよびその連結子会社。
- 利用目的:上記第3項「利用目的」に記載のとおり。
- 個人データの管理責任者:SoftwareOne Japan株式会社(上記第1項に定めるとおり)
越境移転
当社が、お客様の個人データを日本国外(EUおよび英国を除く)の第三者に移転する場合、受領者がAPPIに基づく十分な保護水準を確保している場合またはAPPIのその他の法的例外が適用される場合を除き、事前にお客様の同意を取得いたします。お客様の同意を求める前に、当社は、当該外国の国名、当該外国における個人情報保護制度、および当該第三者が個人情報を保護するために講じている措置について情報を提供します。
第三者への提供および記録の保存
当社は、APPIで認められている場合、または本補足資料に別段の定めがある場合を除き、お客様の事前の同意なしに、お客様の個人データを第三者に提供することはありません。当社は、第三者から個人データを提供または受け取る際は、APPIに従い、記録を作成し、これを保存します。
APPIに基づくお客様の権利
APPIに基づき、お客様は当社に対し、以下の事項について請求することができます:
- 当社が保有する個人データの利用目的の通知。
- 当社が保有するお客様の個人データの内容および記録の開示、または当該個人データの内容が事実と異なる場合の訂正、追加、削除。
- 当該個人データがAPPIに違反して取得された、または取り扱われている場合、当社が保有するお客様の個人データの利用停止または消去、または
- 当該個人データがAPPIに違反して第三者に提供されている場合における第三者による提供の停止。
お客様は、APPIに基づき、当社が保有するお客様の個人の取り扱いについて苦情を申し立てることもできます。このような請求や苦情については、第11条に記載されている当社の連絡先宛てにお問い合わせいただき、提出してください。当社は、APPIに基づき、これらの請求または苦情に対応いたします。当社が保有する個人データの利用目的の通知または内容の開示に関するお客様のご請求に対応するにあたり、必要な措置を講じるために、実際に発生した費用をお客様に請求させていただく場合がありますので、ご留意ください。
要配慮個人情報
当社は、APPIに定める「要配慮個人情報」(例:人種、信条、社会的身分、病歴、犯罪歴、犯罪による被害を受けた事実など)については、APPIで認められている場合、またはあらかじめお客様の同意を得た場合を除き、取得いたしません。
お問い合わせ先
日本における当社の個人データの取り扱いに関するお問い合わせ、またはお客様の権利の行使に関しては、以下までご連絡ください:
SoftwareOne Japan株式会社
〒107-0052 東京都港区赤坂2-5-8 ヒューリックJP赤坂ビル8階
+81 3 5005 2801
info.jp@softwareone.com
This Supplement applies where personal data is processed in the United Arab Emirates (“UAE”) or where the UAE Federal Decree Law No. 45 of 2021 on the Protection of Personal Data (“UAE PDPL”) is applicable. This Supplement shall be read together with the above Privacy Notice. Where any conflict arises, the provisions of this Supplement prevail for processing activities subject to the UAE PDPL.
Overseas Transfers (Articles 22–24 UAE PDPL)
SoftwareOne may transfer personal data outside the UAE only in accordance with the requirements of the UAE PDPL. Such transfers may take place where:
- The destination country appears on the UAE Data Office’s approved adequacy list;
- Appropriate contractual safeguards or legally recognized transfer mechanisms are implemented; or
- An exception under the UAE PDPL applies.
SoftwareOne ensures that all cross border transfers are supported by appropriate protection measures consistent with the UAE PDPL and the internal data protection standards.
Personal Data Breach Notification (Article 9 UAE PDPL)
In the event of a personal data breach that may pose a risk to the confidentiality, privacy, security or rights of individuals, SoftwareOne will:
- Notify the UAE Data Office without undue delay, and
- Notify affected individuals where the breach is likely to cause significant harm or impact.
SoftwareOne may maintains internal incident response processes to ensure timely detection, assessment, reporting, and mitigation of personal data breaches.
Data Protection Officer Requirement (Articles 10–11 UAE PDPL)
SoftwareOne appoints a Data Protection Officer (“DPO”) where required under the UAE PDPL, including scenarios involving:
- High risk processing operations, or
- Large scale processing of sensitive personal data.
The DPO supports ongoing compliance with the UAE PDPL, monitors internal controls, advises on data protection obligations and acts as a liaison with the UAE Data Office.
Rights of Individuals (Articles 13–20 UAE PDPL)
In addition to the rights outlined in the above Privacy Notice, individuals subject to the UAE PDPL may exercise the following rights:
- Right of access to personal data;
- Right to request correction or erasure;
- Right to restrict or stop processing;
- Right to data portability;
- Right to object to automated processing or automated decision making.
Requests may be submitted through the contact channels specified in the above Privacy Notice, and SoftwareOne will respond within the timelines mandated by the UAE PDPL.
Legal Basis for Processing (Article 4 UAE PDPL)
SoftwareOne processes personal data based on one or more legal bases recognized under the law, including:
- Consent;
- Necessity for performance of a contract;
- Compliance with legal obligations;
- Protection of public interest;
- Legitimate interests, to the extent permitted under the UAE PDPL.
Retention (Article 21 UAE PDPL)
Personal data subject to the UAE PDPL is retained only for the duration necessary to fulfil the purposes for which it was collected or as required by applicable legislation. SoftwareOne applies internal retention schedules aligned with the UAE PDPL’s data minimization and storage limitation principles.
Contact for UAE PDPL Requests
Individuals seeking to exercise their rights or raise concerns under the UAE PDPL may contact SoftwareOne at data-protection.me@softwareone.com.
This Supplement applies where personal data is processed within the State of Qatar or where the Qatar Personal Data Privacy Protection Law – Law No. 13 of 2016 (“Qatar PDPL”) is applicable. This Supplement shall be read together with the above Privacy Notice. Where any conflict arises, the provisions of this Supplement prevail for processing activities subject to the Qatar PDPL.
Overseas Data Transfers (Articles 15 & 16 Qatar PDPL)
SoftwareOne may transfer personal data outside the State of Qatar only in accordance with the requirements of the Qatar PDPL. Transfers may take place where:
- The receiving country provides an adequate level of protection;
- Explicit consent of the individual is obtained; or
- Appropriate safeguards or legally recognized transfer mechanisms are implemented.
SoftwareOne ensures that all cross border transfers follow the protection standards mandated under the Qatar PDPL.
Personal Data Breach Notification (Article 14 Qatar PDPL)
In the event of a personal data breach, SoftwareOne will:
- Notify the Ministry of Communications and Information Technology (MCIT) immediately, as required under the Qatar PDPL; and
- Notify affected individuals where the breach is likely to result in harm or adverse impact.
SoftwareOne maintains internal procedures to detect, assess and report breaches in accordance with statutory obligations.
Consent Requirements (Article 4 Qatar PDPL)
SoftwareOne obtains consent in accordance with the Qatar PDPL, ensuring that:
- Consent is explicit and informed;
- Consent is obtained prior to the processing of personal data;
- Additional safeguards are applied when processing sensitive personal data.
Where consent is withdrawn, SoftwareOne will cease processing activities unless another lawful basis under the Qatar PDPL applies.
Rights of Individuals (Articles 7–10 Qatar PDPL)
Individuals whose personal data is processed under the Qatar PDPL may exercise the following rights:
- Right of access to personal data;
- Right to request correction or erasure;
- Right to object to processing;
- Right to withdraw consent at any time.
Such rights can be exercised by reaching SoftwareOne at data-protection.me@softwareone.com. Replies will be received within the timelines specified under the Qatar PDPL.
This Supplement applies where personal data is processed within Australia or where the Privacy Act 1988 (Cth) (“Privacy Act”) is applicable. This Supplement shall be read together with the above Privacy Notice. Where any conflict arises, the provisions of this Supplement prevail for processing activities subject to the Privacy Act.
The type of personal data we use and what we do with that depends on the relationship we have with you. Therefore, some parts of this Supplement, as well as of the above Privacy Notice may not be relevant for you or more than one part of this Supplement, as well as of the above Privacy Notice may apply to you.
The meaning of the term “personal data” in this Supplement, as well as in the above Privacy Notice, has the same meaning as set out in the Privacy Act.
This Supplement, as well as the above Privacy Notice may be replaced or supplemented in order to fulfil legal requirements, as well as to provide you with all necessary information on how we process your personal data.
Why we collect personal data
We collect personal data so that we can provide our services to you and your service provider, as well as reasonable associated purposes. These purposes include but are not limited to the purposes already reflected in the above Privacy Notice.
We may also collect your personal information for a purpose which is additional to the original purpose pursuant to which we originally received or collected the personal data.
Personal data we collect
The types of personal data we may receive or collect include the following:
- Name or alias;
- Contact details (such as address, postal address, email, phone number);
- Date of birth;
- Sex, gender, or gender identity;
- Nationality or proof of residence (such as residence permits, work right permits or visa);
- Employment data (such as current employment, past employment or other work history);
- Educational qualifications (such as degrees, accreditations, occupational permits or occupational licences);
- Identification documents (such as passport, driver’s licence, identity card or other similar documentation);
- Pictures (such as head shots);
- Transaction and bank account details;
- Any personal information that is inherently disclosed when you or your service provider communicate with us (such as metadata); and
- Criminal history.
In limited circumstances we may need to obtain health information from you. In such circumstances we will make an express request and will treat any information as strictly confidential.
Further details about the personal data we collect and how it is processed or used depending on our relationship with you can be found in the above Privacy Notice.
How we collect personal data
We receive or collect personal data directly from your or your service provider’s in interactions with us, such as when you create a user account, sign up for our services, submit queries or engage with the services we provide. In addition to this, any personal data that you provide to us will constitute the collection of personal data for the purposes of this Supplement, as well as the above Privacy Notice.
Personal data may also be collected via our website, forms, phone calls, emails or through third-party providers with your consent or to the extent necessary to provide the services to you.
How we hold and protect personal data
We will only retain your personal data only so long as is necessary to provide our services, after which time we will destroy it, unless we:
- are required by law to retain it; or
- are required to preserve it for the purposes of providing services to another customer; or
- have agreed to a request by you or your service provider to preserve that personal information; or
- have a legitimate purpose for retaining it.
We take all reasonable steps to protect all information we hold, including personal data.
Cookies and other similar technologies
We may use cookies and similar technologies (for simplicity reasons, hereinafter referred to as “Cookies”), when you use our websites, platforms, applications as well as other products and services.
Our Cookie Banner and consent management system show you a list of the Cookies we use, including their provider, purpose, description and other relevant information. In the default setting, only the essential Cookies are enabled. Via the consent management system, you can determine whether you allow the setting of additional Cookies or not. You can adjust your preferences at any time via the consent management system.
Further information about the ways that we may track your personal information including on social media (e.g., Facebook) can be found in the above Privacy Notice.
Disclosure to third parties
We may disclose your personal data to parties to fulfil the purposes described above, including to provide services to you or your service provider. Due to SoftwareOne’s international group structure, personal data will be disclosed to certain departments and persons on a need-to-know basis to process personal data so that we can provide our services. For all intragroup personal data access and transfers, we comply with the provisions of the Privacy Act.
Third party service providers contracted by SoftwareOne may also receive personal data to provide or facilitate the provision of our services. These include, service providers who support us with order fulfilment, payment / billing, customer service, finance, auditing, fraud detection, IT services, communication, hosting, logistics, email delivery, marketing, sales, data analysis, event management, training, surveys, printing, archive, advisory and consulting services.
We may disclose your personal data to further recipients, such as private as well as public entities and institutions, including law enforcement, data protection authorities, tax authorities, credit agencies, debt collectors, banks, courts, hotels or other companies insofar as there is a legal basis for such disclosure.
Disclosure overseas
As we operate in a number of countries it is possible that your personal data may need to be transferred outside of Australia to countries in which we operate including the European Union, the United Kingdom and Switzerland, in order to provide our services. We will take reasonable steps to ensure that such recipients comply with the Privacy Act and maintain the confidentiality and security of your personal information.
Accessing or correcting personal data
You may contact us to access your personal data we hold about you and to request corrections if any details are inaccurate or incomplete. We may refuse to provide access you with to your personal data if:
- we are legally permitted to do so and consider it appropriate; or
- are required by law to deny the request.
Questions and complaints
If you have any requests, comments, queries or complaints in relation to your personal data, our handling of your personal data or how we handle personal data generally, please contact our information officer at data-protection.apac@softwareone.com.
We will respond to any requests or complaints within a reasonable period (usually 30 days).
If you disagree with our response or any decision that we make in respect of your personal data, including in respect of any complaint that you have made, you may refer your complaint to the Office of the Australian Information Commissioner by visiting www.oaic.gov.au, calling 1300 363 992 or by emailing enquiries@oaic.gov.au.
This Supplement applies where personal data is processed within New Zealand or where the Privacy Act 2020 (“Privacy Act”) is applicable. This Supplement shall be read together with the above Privacy Notice.
The type of personal data we use and what we do with that depends on the relationship we have with you. Therefore, some parts of this Supplement, as well as of the above Privacy Notice may not be relevant for you or more than one part of this Supplement, as well as of the above Privacy Notice may apply to you.
The meaning of the term “personal data” in this Supplement, as well as in the above Privacy Notice has the same meaning as set out in the Privacy Act.
This Supplement, as well as the above Privacy Notice may be replaced or supplemented in order to fulfil legal requirements, as well as to provide you with all necessary information on how we process your personal data.
Why we collect personal information
We collect personal data so that we can provide our services to you and your service provider, as well as reasonable associated purposes. These purposes include but are not limited to the following:
- communicate with you and your service provider, process requests and respond to requests;
- process comments or posts;
- register and send newsletters to you which you subscribe to;
- marketing purposes;
- registration, authentication and administration of user accounts;
- license monitoring purposes;
- provision of demo products and services as well as trials (also from third parties);
- analysis purposes in order to improve our products and services;
- tailor our website content and experience to your interests;
- maintain the security of our websites, platforms, applications as well other products and services;
- comply with legal and regulatory requirements and requests; and
- establish, exercise and defend legal claims.
We may also collect your personal data for a purpose which is additional to the original purpose pursuant to which we originally received or collected the personal data.
You are not required to give us your personal data, however, if you choose not to we may be unable to provide, in whole or in part, our services to you and your service provider.
Further details about the personal data we collect and how it is processed or used depending on our relationship with you can be found in the above Privacy Notice.
Personal data we collect
The types of personal data we may receive or collect include the following:
- Name or alias;
- Contact details (such as address, postal address, email and phone number);
- Date of birth;
- Sex, gender or gender identity;
- Nationality or proof of residence (such as residence permits, work right permits or visa);
- Employment data (such as current employment, past employment or other work history);
- Educational qualifications (such as degrees, accreditations, occupational permits or occupational licences);
- Identification documents (such as passport, driver’s licence, identity card or other similar documentation);
- Pictures (such as head shots);
- Transaction and bank account details;
- Any personal data that is inherently disclosed when you or your service provider communicate with us (such as metadata); and
- Criminal history.
During the course of providing services to you or your service provider we may create information about you which constitutes personal data including things such as emails, letters or other internal records.
Further details about the personal data we collect and how it is processed or used depending on our relationship with you can be found in the above Privacy Notice.
How we collect personal data
We receive or collect personal data directly from your or your service provider’s in interactions with us, such as when you create a user account, sign up for our services, submit queries or engage with the services we provide. In addition to this, any personal data that you provide to us will constitute the collection of personal data for the purposes of this Supplement, as well as the above Privacy Notice.
Information which we create as a result of providing services to you or your service provider which constitutes personal data will also constitute the collection of personal data for the purposes of this Supplement, as well as the above Privacy Notice.
Personal data may also be collected via our website, forms, phone calls, emails or through third-party providers with your consent or to the extent necessary to provide the services to you.
How we hold and protect personal data
We will only retain your personal data only so long as is necessary to provide our services, after which time we will destroy it unless we:
- are required by law to retain it; or
- are required to preserve it for the purposes of providing services to another customer; or
- have agreed to a request by you or your service provider to preserve that personal data; or
- have a legitimate purpose for retaining it.
We take all reasonable steps to protect all information we hold, including personal data.
Cookies and other similar technologies
We may use cookies and similar technologies (for simplicity reasons, hereinafter referred to as “Cookies”), when you use our websites, platforms, applications as well as other products and services.
Our Cookie Banner and consent management system show you a list of the Cookies we use, including their provider, purpose, description and other relevant information. In the default setting, only the essential Cookies are enabled. Via the consent management system, you can determine whether you allow the setting of additional Cookies or not. You can adjust your preferences at any time via the consent management system.
Further information about the ways that we may track your personal data including on social media (e.g., Facebook) can be found in the above Privacy Notice.
Disclosure to third parties
We may disclose your personal data to parties to fulfil the purposes described above including to provide services to you or your service provider. Due to SoftwareOne’s international group structure, personal data will be disclosed to certain departments and persons on a need-to-know basis to process personal data so that we can provide our services. For all intragroup data access and transfers, we comply with the provisions of the Privacy Act.
Third party service providers contracted by SoftwareOne may also receive personal data to provide or facilitate the provision of our services. These include, service providers who support us with order fulfilment, payment / billing, customer service, finance, auditing, fraud detection, IT services, communication, hosting, logistics, email delivery, marketing, sales, data analysis, event management, training, surveys, printing, archive, advisory and consulting services.
We may disclose your personal data to further recipients to the extent required to fulfil the purpose, such as private as well as public entities and institutions, including law enforcement, data protection authorities, tax authorities, credit agencies, debt collectors, banks, courts, hotels or other companies insofar as there is a legal basis for such disclosure.
Disclosure overseas
As we operate in a number of countries it is possible that your personal data may need to be transferred outside of New Zealand to countries in which we operate including the European Union, the United Kingdom and Switzerland, in order to provide our services. We will take reasonable steps to ensure that such recipients comply with the Privacy Act and maintain the confidentiality and security of your personal data.
Accessing or correcting personal data
You may contact us to access your personal data we hold about you and to request corrections if any details are inaccurate or incomplete. We may refuse to provide access you with to your personal data if:
- we are legally permitted to do so and consider it appropriate; or
- are required by law to deny the request.
Questions and complaints
If you have any requests, comments, queries or complaints in relation to your personal data, our handling of your personal data or how we handle personal data generally, please contact our information officer at data-protection.apac@softwareone.com.
We will respond to any requests or complaints within a reasonable period (usually 30 days).
If you disagree with our response or any decision that we make in respect of your personal data including in respect of any complaint that you have made, you may refer your complaint to the Privacy Commissioner (Te Mana Matapono Matatapu) by visiting www.privacy.org.nz, calling 0800 803 909 or by emailing enquiries@privacy.org.nz.
Applicability
This Supplement forms an integral part of the above Privacy Notice and applies solely to Data Principals located in India.
This Supplement governs the processing of digital personal data by SoftwareOne in accordance with the Digital Personal Data Protection Act, 2023 ("DPDP Act") and the rules made thereunder ("DPDP Rules"), including:
- personal data collected in digital form within India;
- personal data collected in non-digital form and subsequently digitized; and
- processing of digital personal data carried out outside India in connection with the offering of goods or services to Data Principals within India, in accordance with Section 3 of the DPDP Act.
In the event of any inconsistency between this Supplement and the above Privacy Notice, the provisions of this Supplement shall prevail to the extent of such inconsistency for processing governed by Indian law.
Definitions
Unless otherwise defined herein, capitalized terms used in this Supplement shall have the meanings ascribed to them under the DPDP Act and the DPDP Rules.
For the purposes of this Supplement:
- "Board" means the Data Protection Board of India established under the DPDP Act;
- "Data Principal" means the individual to whom the personal data relates and where such individual is
- a child, includes the parents or lawful guardian of such child; or
- a person with disability, includes her lawful guardian acting on her behalf.
- "SoftwareOne" means the relevant SoftwareOne entity acting as a Data Fiduciary in relation to the processing of personal data under Indian law.
Notice to Data Principals
Consent to the processing of personal data by SoftwareOne shall be obtained only upon the Data Principal’s acceptance of this Supplement and the above Privacy Notice.
Contact for Data Protection Requests
Any request for withdrawal of consent, request for access to information, correction, erasure, grievance or any other communication under the DPDP Act may be addressed to:
Designation / Department: Regional General Counsel
Email ID: data-protection.apac@softwareone.com
Alternately, the Data Principal may communicate his request at: Shweta.Sinha@softwareone.com.
Grievance Redressal Mechanism
SoftwareOne has established an effective grievance redressal mechanism to address grievances raised by Data Principals in relation to the processing of their personal data.
A Data Principal may submit a grievance by contacting the Grievance Officer at:
Name: Regional General Counsel
Designation: Grievance Officer – India
Email ID: data-protection.apac@softwareone.com
Postal Address: 7th Floor, Tower 1A, International Tech Park, Near Sector 59, Behrampur, Gurugram, Haryana-122101.
SoftwareOne shall acknowledge the grievance and endeavor to resolve it within 30 days from the date of receipt.
A Data Principal shall exhaust the grievance redressal mechanism provided herein before approaching the Board, in accordance with Section 13 of the DPDP Act.
Nomination
A Data Principal may nominate one or more individuals to exercise her rights under the DPDP Act in the event of her death or incapacity.
Such nomination may be made by:
- submitting a request through the user account or digital interface made available by SoftwareOne; or
- submitting a written request to SoftwareOne using the contact details provided in this Supplement, along with such information and verification details as may be reasonably required by SoftwareOne.
Processing and Transfer of Personal Data Outside India
SoftwareOne may transfer personal data outside the territory of India only in accordance with:
- any restrictions notified by the Central Government on the transfer of personal data to specified countries or territories; and
- the conditions and safeguards specified by the Central Government through general or special orders.
Where such transfers occur, SoftwareOne shall ensure compliance with all applicable requirements under the DPDP Act, the DPDP Rules, and other applicable Indian laws.
Updates to this Supplement
This Supplement may be updated from time to time to reflect changes in applicable law, including amendments to the DPDP Act or the DPDP Rules, or guidance, directions or orders issued by the Government of India or the Data Protection Board of India. Material changes shall be notified to Data Principals through appropriate and reasonable means.
Children’s Personal Data
SoftwareOne does not knowingly process personal data of children, as defined under the DPDP Act.
Where processing of personal data of a child becomes necessary under applicable law, SoftwareOne shall ensure compliance with the requirements relating to verifiable parental consent and other safeguards prescribed under the DPDP Act and the DPDP Rules.
Additional DPDP-Specific Disclosures
Right to Withdraw Consent: Withdrawal of consent shall not affect the legality of processing carried out prior to such withdrawal.
Data Retention: SoftwareOne shall retain personal data only for such period as is necessary to fulfil the specified purpose or to comply with applicable law, after which such data shall be erased in accordance with the DPDP Act and the DPDP Rules.
本プライバシー通知の変更
当社は、適用される法律、当社の業務慣行やサービス、法的要件の変更を反映させるため、または透明性を高めるために、本プライバシー通知を随時更新する場合があります。当社が重要な変更を行う際は、本プライバシー通知の上部に記載されている発効日を更新してお客様に通知します。したがって、当社がお客様の個人データをどのように収集、利用、保護しているかについて常に最新の情報をご確認いただけるよう、本プライバシー通知を定期的にご確認いただくことをお勧めします。
SoftwareOneとCrayonの合併に伴い、本プライバシー通知の発効日より前に収集された個人データについては、両社の従来のプライバシー通知が引き続き適用される場合がありますので、ご留意ください。
- 発効日より前にSoftwareOneが収集した個人データについては、 こちらに掲載されている旧プライバシー通知を参照してください。
- 発効日より前にCrayonが収集した個人データについては、こちら に掲載されている旧プライバシー通知を参照してください。
ージョン履歴
| バージョン | 日付 |
| 1.0 | 2020年6月 |
| 2.0 | 2021年9月 |
| 3.0 | 2026年8月 |