1. Introduction
Global Risk Intelligence (GRI) respects the privacy rights of our users and is strongly committed to protecting your privacy online. This Privacy and Security Policy applies to our website, related user login areas, and the data we manage through our services. It outlines how we collect, use, protect, and manage data, ensuring compliance with global data protection regulations.
2. Scope of the Policy
This policy applies to all personal and business data collected, processed, and stored by GRI, including:
- Clients and prospective clients,
- Website visitors and users of our digital platforms,
- Third parties involved in Due Diligence investigations.
It does not apply to information collected offline or through other products and services not directly related to this website.
3. Statement of Policy
GRI is committed to protecting against unauthorized access, use, corruption, disclosure, and distribution of non-public personal information. This includes adherence to all applicable data protection laws and regulations. We maintain strict confidentiality and limit disclosure only when legally required or explicitly authorized.
4. Collection and Use of Personal Information
GRI collects personal information that you voluntarily provide through this website, which may include:
- Personal Information: Names, addresses, email addresses, phone numbers, billing information, and job-related data.
- Business Information: Company profiles, ownership structures, financial records, and compliance data.
- Technical Data: IP addresses, browser types, and usage patterns from our website and proprietary platforms.
We will collect this information when you:
- Register for GRI services and products.
- Request information about our services.
- Apply for job opportunities.
- Participate in promotions or surveys.
Use of Data: We use this information to:
- Communicate with you and provide the requested services,
- Conduct Due Diligence investigations and risk assessments,
- Enhance our proprietary tools and archives,
- Ensure regulatory compliance and risk management,
- Offer information, special offers, and promotions relevant to your interests.
5. Disclosure of Personal Information
GRI will not inspect, share, or disclose customer data to third parties unless:
- Required by law or court judgment,
- Necessary to fulfill contractual obligations with trusted third-party service providers under strict confidentiality agreements.
Our web services do not gather or log on to user activities beyond what is required for operational security.
6. Data Security Measures
GRI employs robust measures to safeguard personal information:
- Secure Servers: All data is stored on secure servers with strict access controls.
- Encryption: We use a 128-bit secure site certificate for encrypted connections.
- Access Controls: Role-based access and multi-factor authentication.
- Administrative Measures: Rigorous internal policies to ensure data integrity.
Online Security Tips:
To enhance your online security, we recommend the following best practices:
- Install and update anti-virus, anti-spyware, and internet security software,
- Use strong encryption and secure browser settings,
- Regularly update your operating system and web browser,
- Protect your devices from unauthorized access,
- Change passwords frequently, using strong, unique combinations,
- Reports suspicious activity immediately,
- Avoid opening attachments from unsolicited emails,
- Be cautious of phishing scams—use direct web addresses instead of links from unknown sources.
7. Management and Training
- Access to non-public personal information is limited to authorized users necessary for GRI operations.
- Employees with access must annually sign the Data Privacy and Security Policy and agree to its terms.
- Third parties receiving non-public information must certify compliance with GRI’s policy or have equivalent data protection measures.
- Background checks are conducted on employees with data access; third parties must ensure the same for their personnel.
- A succession plan is in place to ensure continuity in data protection during business disruptions.
- Segregation of duties is maintained to prevent conflicts of interest and enhance security controls.
- Employees receive regular training on security protocols.
- Policy violations may result in disciplinary actions, including termination.
8. Information Systems Security
GRI maintains comprehensive procedures for the security of its information systems, covering:
- Controlled access to sensitive data,
- Protection of records from unauthorized access, interception, or destruction,
- Secure data backup and recovery practices,
- Procedures for secure data disposal,
- Continuous monitoring and detection of security breaches,
- Annual audits to evaluate policy effectiveness.
9. Information Security and Response
In the event of unauthorized data access, GRI will:
- Investigate and mitigate potential risks,
- Notify affected individuals if required by law,
- Report incidents to appropriate authorities,
- Implement corrective actions to prevent recurrence.
10. Compliance with Laws
GRI complies with global data protection laws, including:
- GDPR (EU Regulation 2016/679): Applies to all organizations processing personal data of EU residents, even outside the EU.
- Greek Data Protection Law (Law 4624/2019): Regulates data protection practices within Greece and supplements GDPR.
- Swiss Federal Act on Data Protection (FADP): Governs data processing in Switzerland.
- Other International Regulations: As applicable to GRP Greece’s global operations.
11. Modifications to This Privacy Policy
GRI reserves the right to update this policy at any time. Changes will be posted on this page with the updated effective date.
12. Contact Information
For inquiries about this policy:
Data Protection Officer (DPO)
Global Risk Intelligence
166 Kifissias Ave. & 2 Sofokleous Str.
Marousi 15126, Athens, Greece
Email: welcome@globalriskintelligence.com
Telephone: +30 211987389
This policy reflects our dedication to data protection, security, and compliance in delivering top-tier Ethics and Compliance services globally.