No items found.

Institutional relations

Purpose

Management and control of the contact data of individuals or representatives of public and private entities that have institutional relations with the entity.


Entity in charge


The legal bases for the processing are:

  • Article 6(1)(f) of GDPR: Processing is necessary for the purposes of the legitimate interests pursued by the controller.

Data retention periods

Data will be stored for 1 year or the time necessary to comply with the purpose for which they were collected and to determine the possible liabilities that could derive from that purpose and data processing. The provisions of the file and documentation regulations applicable to Navantia will apply.


Affected groups

Persons who maintain some type of institutional or professional relationship with Navantia and those who have been included in the contact agenda.


Data type - Infringement

Data not processed.

Data types - Special categories

Data not processed.

Data type - Identification data

  • Name and surname
  • NIF (NIE, Passport, or Residence Card Number)
  • Postal address
  • Telephone
  • Email address
  • Image

Data type - Other

  • Employment details
  • Other contact-related information
  • Entity to which they belong

Security measures

The security measures applied correspond to those provided in Annex II (Security Measures) of Royal Decree 311/2022, of May 3, which regulates the National Security Scheme in the field of Electronic Administration and are described in the documents forming part of Navantia’s Data Protection and Information Security Policy. Security measures corresponding to Annex A of UNE-EN/IEC 27001 - Information Security Management Systems.

Additionally, security measures are adopted for paper-based documentation according to the risks to which they are exposed, in order to ensure the confidentiality of the processed data.


Communication

Not foreseen.


International transfers

Not foreseen.