Data Privacy Program

Enterprise-wide data privacy program

EG has an extensive Data Privacy Program. The program includes policies and guidelines, risk-based assessments, close monitoring, incident handling, and continued awareness and training. The program is governed by our GDPR Committee and implemented by our central legal department in close collaboration with our business units.

Data privacy embedded in our EG organisation​

The overall governing of data privacy in EG lies within the GDPR Committee which constitutes cross-divisional authorities and legal expertise that support and ensure effective corporation and best practices in relation to data protection across EG. ​

The overall responsibility of management of data privacy is placed centrally in the Group Legal & Compliance department which supports and ensures efficient business within data protection across EGs business units and our associated companies.​

The operational responsibility for following our data privacy and security policies, requirements and guidance and to implement these required measures lies on the organizational business units developing and maintaining our EG products.

Awareness and Training​

All employees in EG are subject to annual data protection awareness training. Whenever and at least once a year when policies, guidelines and procedures are updated this is communicated to all EG employees. in addition, dedicated training is available for specific groups of people like support and development personnel concerning relevant data protection regulation. ​

EGs policies, procedures and guidelines are available in our ISMS system in which EG employees can always find the updated information. If an employee becomes aware of errors and defects, he or she must inform the relevant contact person or department listed in the relevant policy, procedure or guideline. ​

Policies & Guidelines​

EGs Group Legal & Compliance Department supports the EG organisation with an extensive set of data protection policies, guidelines, procedures and checklists to ensure compliance with data protection legislation related to our products/services. ​

The Group Legal & Compliance Department reports annually to the GDPR Committee and supports mandatory assessments and reviews regarding data protection risks related to our products/services. ​

You may read more about our policy on processing our customers’ personal data and our internally owned personal data in our EGs Code of Conduct or EGs Data Ethics ​