Data Protection

1. Data protection at a glance

General information

The following information provides a simple overview on what happens with your personal data when you visit our website. Personal data are all data with which you can be personally identified. You can view our client information pursuant to Art. 13 DSGVO here. For comprehensive information on data protection, we refer you to the data protection declarations following this text.

Data collection and processing on our website

Who is responsible for collecting and processing data on our website?

Data on our website are collected and processed by the website owner, RSM, whose contact details are in the legal notice entitled imprint of this website.

How do we collect your data?

At first your data are collected by your having disclosed them to us, such as by hav-ing filled out and sent us a contact form.

Other data are automatically collected by our IT systems when you visit our website. These are primarily technical data (e.g. an internet browser, an operating system or the exact time when our website was opened). These data are automatically col-lected as soon as you enter our website.

How do we use your data?

A portion of your data is collected in order to ensure that our website is available error free. Other data can be used to analyse your user behaviour.

What rights do you have with regard to your data?

At any time you may, free of charge, obtain information on the origin, recipients and purpose of any data relating to your person stored by us. Moreover, you have the right to demand that your data be rectified, restricted or erased. For this purpose as well as for any other questions on data protection, you may at any time contact us at the address indicated in our imprint. Additionally, you have the right to lodge a complaint to the responsible supervisory authority.

2. General and mandatory information

Data protection

The owner of this website takes the protection of your personal data very seriously. We treat your personal data with utmost confidentiality and strictly in line with legal data protection regulations as well as in accordance with this data protection declaration.

When you use this website, various personal data are collected. Personal data are data with which you can be personally identified. The data protection declaration at hand explains which data we collect and the purpose for which we use them. This declaration also explains how and for what purpose this takes place.

We point out that data transmitted through the internet (e.g. email communication) may have security gaps. It is not possible to provide complete protection from third parties gaining access to data.

Responsible body

The responsible body for processing data on this website lies with:

RSM GmbH, Georg-Glock-Str. 4, 40474 Düsseldorf

A responsible body is a natural or legal person that alone or jointly with others makes decisions on the purpose and the means of processing personal data (e.g. names, email addresses, etc.).

Withdrawing your consent to data processing

Many data processing transactions are solely possible with your express consent. At any time you may withdraw any consent already given. It is sufficient to send us an informal request by email. The legality of data having been processed prior to your consent being withdrawn remains unaffected.

Right to lodge a complaint with a supervisory authority

In the event of an infringement of the data protection law, the data subject has the right to lodge a complaint with the responsible supervisory authority. The superviso-ry authority responsible for questions concerning the data protection law is the state data protection officer of the German federal state, North Rhine-Westphalia, in which our Company is legally seated. A list of data protection officers as well as of their contact data is available through the following link: https://www.bfdi.bund.de/DE/Infothek/Anschriften_Links/anschriften_links-node.html

Right to data portability

You have the right to transmit data, which we have automatically processed on the basis of either your consent or of having fulfilled a contract, to yourself or to a third party in a commonly used and machine-readable format. Should you request to have such data directly transmitted to another controller, a responsible party having control over the data, it may only be carried out as far as technically possible.

Information, restriction, erasure

In the framework of the applicable legal regulations, you have the right to obtain information on your personal data stored, on the source from which they originated, on the recipients and on the purpose for which the data were processed free of charge and at any time, and if necessary, you also have the right to have such data rectified, restricted and erased. For any questions you may have concerning this particular topic or any other personal data issues, you may contact us through the address indicated in the imprint of this website at any time.

3. Data protection officer

Data protection officer prescribed by law

We have appointed a data protection officer for our Company.

This officer may be contacted via email: datenschutz[at]rsm.de

4. Data collection on our website

Cookies Websites partially use so-called “cookies”. Cookies neither cause any damage to your computer nor contain any viruses. Cookies serve to make our offers more user friendly, more effective and more secure. Cookies are small text files filed on your computer and saved by your browser.

Most of the cookies we use are so-called “session cookies”. They are automatically erased at the end of your visit. Other cookies remain on your terminal device until you erase them. These cookies allow us to recognise your browser again at your next visit.

You can set your browser such that you will be informed whenever cookies are set, that you only accept cookies on a case by case basis, that you may exclude them for particular cases or in general, and that you may enable cookies to be erased automatically upon closing the browser. Please be aware that when cookies are disabled, the functionality of this website may be restricted.

Cookies required for conducting electronic communication transactions or for choosing certain functions (e.g. the shopping cart function) are stored on the basis of Article 6 (1) letter f of the EU General Data Protection Regulation (EU GDPR). The website owner has a legitimate interest in storing cookies in order to make its services technically error free and optimally available. To the extent other cookies (e.g. cookies for analysing your surfing behaviour) are stored, they are addressed separately in this data protection declaration.

Google Analytics

If you have given your consent, Google Analytics, a web analysis service of Google Ireland Limited ("Google") is used on this website. The use includes the "Universal Analytics" operating mode. This makes it possible to assign data, sessions and interactions across multiple devices to a pseudonymous user ID and thus analyze a user's activities across devices. This data protection notice is provided by www.intersoft-consulting.de.

Google Analytics uses "cookies", which are text files placed on your computer, to help the website analyze how users interact with the site. The information generated by the cookie about your use of this website is usually transferred to a Google server in the USA and stored there. However, if IP anonymisation is activated on this website, Google will reduce your IP address within Member States of the European Union or in other states party to the Agreement on the European Economic Area beforehand. We would like to point out that on this website Google Analytics has been extended to include IP anonymisation in order to ensure anonymous collection of IP addresses (so-called IP masking). The IP address transmitted by your browser in the context of Google Analytics is not merged with other Google data. For more information on terms of use and data protection, please visit https://www.google.com/analytics/terms/gb.html or https://policies.google.com/?hl=en.

Purposes of the Processing
On behalf of the operator of this website, Google will use this information to evaluate your use of the website, to compile reports on website activity and to provide the website operator with other services related to website and Internet use.

Legal Basis
The legal basis for the use of Google Analytics is your consent in accordance with Art. 6 para. 1 lit. a GDPR.

Recipients or Categories of Recipients
The recipient of the collected data is Google.

Transfer to Third Countries
Personal data will be transferred to the USA under the EU-US Privacy Shield on the basis of the European Commission's adequacy decision. You can download the certificate here.

Duration of Data Storage
The data sent by us and linked to cookies, user-identifiers (e.g. User-IDs) or advertising-identifiers are automatically deleted after 14 months. Data whose retention period has been reached is automatically deleted once a month.

Rights of the Persons affected
You can revoke your consent at any time with effect for the future by blocking the storage of cookies by setting your browser software accordingly; however, we would like to point out that in this case you may not be able to use all functionalities of this website to their full extent.

You can also prevent Google from collecting the data generated by the cookie and relating to your use of the website (including your IP address) and from processing this data by Google by downloading and installing the Browser Add-on. Opt-out cookies will prevent future collection of your data when you visit this website. To prevent Universal Analytics from collecting data across different devices, you must opt-out on all systems used. If you click here, the opt-out cookie will be set: Disable Google Analytics

Contact form

When you make queries through our contact form, the information you provide on this form, including the contact data you indicate therein, is stored for the purpose of our processing your query and in case any follow-up questions arise. We do not transmit such data without your consent.

Therefore, data entered into the contact form are solely processed on the basis of your consent as described in Article 6 (1) letter a of the GDPR. You may withdraw this consent at any time. It is sufficient to send us an informal request by email. The legality of data having been processed prior to your consent being withdrawn remains unaffected.

Data you have entered on the contact form remain with us until either you request they be erased, you withdraw your consent for their storage or the purpose of stor-ing the data storage is no longer necessary (e.g. after completely processing your query). Mandatory legal regulations – in particular data retention schedules – remain unaffected.

Job applicant data

We collect and process the personal data of job applicants for the purpose of im-plementing our job application procedures. Processing may also be done by electronic means.

This is particularly the case when an applicant transmits relevant job application documents to us by electronic means, such as by email or through a web form on our website.

Should an employment contract ensue from a job application, the data transmitted for the purpose of processing the employment relationship are stored in compliance with legal regulations.

Should no employment contract ensue from a job application, the job application documents are erased six months after the job vacancy has been filled, to the extent the person responsible for processing the data has no other legitimate interests that speak against their erasure. An example of another legitimate interest in this sense is the duty of burden of proof in legal proceedings in accordance with the General Equal Treatment Act [Allgemeinen Gleichbehandlungsgesetz (AGG)]. By consent of the job applicant, such data may also be stored for a longer period.

5. Social media

Facebook plug-ins (like & share buttons)

On our website pages plug-ins are integrated into the social network, Facebook, owned by Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA. You can recognise Facebook plug-ins by the Facebook logo or the "like” button on our website. You can find an overview of Facebook plug-ins here: https://developers.facebook.com/docs/plug-ins/

When you visit our website pages via a plug-in, a direct connection is established between your browser and the Facebook server. By this means, Facebook receives the information that you have visited our website with your IP address. When you press the Facebook “like” button while being logged on to your Facebook account, you are able to link the content of our website pages with your Facebook profile. By this means, Facebook is able to allocate your visit to our website to your user account. Please note that we, as the provider of the website, receive no knowledge either of the content of the data transmitted nor of their use by Facebook. You can find further information on this in the data policy of Facebook under: https://de-de.facebook.com/policy.php

Should you not wish Facebook to be able to allocate your visit to our website to your Facebook user account, please log out of your Facebook user account.

6. Plug-ins and tools

YouTube

Our website uses plug-ins from the YouTube website operated by Google. YouTube, LLC, 901 Cherry Ave., San Bruno, CA 94066, USA, owns this website.

When you visit one of our website pages with a YouTube plug-in, a connection will be established with YouTube servers. By this means, the YouTube server is in-formed about which of our website pages you have visited.

If you are logged into your YouTube account, you allow YouTube to allocate your surfing behaviour directly to your personal profile. You can prevent this by logging out of your YouTube account.

The purpose of our using YouTube lies in our interest in attractively presenting our online offerings. This is a legitimate interest in line with Article 6 (1) letter f of the GDPR.

You can find further information on the handling of user data in the privacy policy of YouTube under: https://www.google.de/intl/de/policies/privacy

Vimeo

Our website uses plug-ins from the video portal, Vimeo, owned by Vimeo Inc., 555 West 18th Street, New York, New York 10011, USA.

When you visit one of our website pages equipped with a Vimeo plug-in, a connec-tion will be established with Vimeo servers. By this means, a Vimeo server is in-formed of which of our website pages you have visited. In addition, Vimeo obtains your IP address. This also holds true even if you are not logged on to Vimeo or do not even have a Vimeo account. Information collected by Vimeo is transmitted to Vimeo servers in the USA.

If you are logged into your Vimeo account, you allow Vimeo to allocate your surfing behaviour directly to your personal profile. You can prevent this by logging out of your Vimeo account.

You can find further information on the handling of user data in the privacy policy of Vimeo under: vimeo.com/privacy

Google Maps

Via an application programming interface (API), this website uses the map service, Google Maps, owned by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA.

In order to use the functions of Google Maps, it is necessary to have your IP address stored. As a rule, this information is transmitted to a Google server in the USA and stored there. RSM, as the owner of this website, has no influence on this data transmission.

The purpose of our using Google Maps lies in our interest in attractively presenting our online offerings and in wanting our viewers to more easily find the locations of our offices on our website. This is a legitimate interest in line with Article 6 (1) letter f of the GDPR.

You can find further information on the handling of user data in the privacy policy of Google: https://www.google.de/intl/de/policies/privacy/

Data protection declaration for the use of LinkedIn

Our website uses functions of the network, LinkedIn, owned by LinkedIn Corpora-tion, 2029 Stierlin Court, Mountain View, CA 94043, USA. Each time you open one of our website pages containing functions provided by LinkedIn, a connection is set up with LinkedIn servers. LinkedIn is informed of your visit to our internet pages with your IP address. When you press the LinkedIn "recommend” button and are logged into your LinkedIn account, it is possible for LinkedIn to allocate your visit to our website and to your user account. Please note that we, as the owner of this web-site, receive no knowledge either of the content of the data transmitted nor of their use by LinkedIn. You can find further information in the privacy policy of LinkedIn under: https://www.linkedin.com/legal/privacy-policy

Data protection declaration for the use of XING

Our website uses functions of the network, XING, owned by XING AG, Dammtor-straße 29-32, D 20354 Hamburg, Germany. Each time you open one of our website pages containing functions provided by XING, a connection is established with XING servers. To our knowledge, personal data are not stored by doing this. In par-ticular, neither IP addresses are stored nor is user behaviour analysed.

You can find further information on data protection and the XING “share” button in the data protection notice of XING under: https://www.xing.com/app/share?op=data_protection

Data protection declaration for the use of Facebook plug-ins (“like” button)

Our website contains plug-ins integrated with the social network, Facebook, owned by Facebook Inc., 1 Hacker Way, Menlo Park, California 94025, USA. You can rec-ognise Facebook plug-ins by the Facebook logo or the "like” button on our website.

You can find an overview of Facebook plug-ins under: https://developers.facebook.com/docs/plug-ins/

When you visit our website via the plug-in, a direct connection is established be-tween your browser and the Facebook server. By this means, Facebook receives the information that you have visited our website with your IP address. If you press the Facebook “like” button while you are logged into your Facebook account, you are able to link the content of our website with your Facebook profile. Facebook is thereby able to allocate the visit to our website to your user account. Please note that we, as the provider of this website, receive no knowledge either of the content of the data transmitted nor of their use by Facebook. You can find further information on this in the policy of Facebook under: https://de-de.facebook.com/policy.php

Should you not wish Facebook to be able to allocate your visit to our website to your Facebook user account, please log out of your Facebook user account.

Data protection declaration for the use of Twitter

On our website plug-ins are integrated into the service, Twitter. These functions are offered by Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA. By using Twitter and the "re-tweet" function, your Twitter account is linked with the website you have visited and other users are informed of this activity. Data are thereby also transmitted to Twitter. Please note that we, as the provider of this web-site, receive no knowledge either of the content of the data transmitted nor of their use by Twitter. You can find further information on this in the privacy policy of Twitter under https://twitter.com/privacy

You are able to change the data protection settings on your Twitter account under: https://twitter.com/account/settings

7. Newsletter

Newsletter data

Should you wish to subscribe to the newsletter offered on our website, we require an email address from you as well as information allowing us to check whether you are the owner of the email address indicated and whether you are in agreement with receiving the newsletter. No other data are collected unless on a voluntary ba-sis. We solely use these data for transmitting the information requested and do not transmit them to any third parties.

Data entered into the newsletter subscription form are solely processed on the ba-sis of your consent (Article 6 (1) letter a of the GDPR). At any time you may withdraw your consent given for storing data and the email address as well as for their use in transmitting the newsletter by using the “unsubscribe” link in the newsletter. The legality of data having been processed prior to your consent being withdrawn remains unaffected.

Data you have given to us for the purpose of receiving the newsletter will be stored by us until you have unsubscribed to the newsletter, upon which they will then be erased. Data stored for other purposes (e.g. email addresses for the members area) are unaffected by this activity.

7. Email

Information Provided as Mandated by Article 13 GDPR

If this is your first interaction with us, Art. 12, 13 GDPR mandates that we make available to you the following mandatory data protection related information: If you are contacting us via e-mail, we will process your personal data only if we have a legitimate interest in the processing of this data  (Art. 6 Sect. 1 lit. f GDPR), if you have consented to the processing of your data (Art. 6 Sect. 1 lit. a GDPR), if the processing of the data is required for the development, establishment, content or modification of a legal relationship between you and our company (Art. 6 Sect. 1 lit. b GDPR) or if any other legal provision permits the processing of this data. Your personal data will remain in our possession until you ask us to delete the data or you revoke your consent to store the data or if the purpose the data stored is required for no longer exists (e.g. once your request has been conclusively processed). This shall be without prejudice to any compelling statutory provisions – in particular tax and commercial law-based retention periods. You have the right to at any time receive free information concerning the origins, recipients and purpose of your data archived by us. You also have a right to object, to data portability and a right to log a complaint with the competent supervisory agency. Moreover, you can demand the correction, eradication and, under certain circumstances, the restriction of the processing of your personal data. For more details, please consult our Data Privacy Policy (https://www.rsm.de/en/data-protection). Our data protection officer can be reached at datenschutz@rsm.de.