Version: 1  

Effective Date: 25 May 2018 

TELIT 
EU PRIVACY NOTICE  

If you are not a resident of the EU, please refer to Telit’s non-EU Privacy Policy at: www.telit.com/privacy-policy.

 

  1. Who is responsible for processing your data?
  2. Categories and sources of personal data and purposes and lawful basis for processing.
  3. Sharing of your information
  4. Transfers of personal data outside the EEA
  5. Your rights
  6. Retention period

1. WHO IS RESPONSIBLE FOR PROCESSING YOUR DATA AND HOW TO CONTACT US 

This notice (“Notice”) describes the steps Telit IoT Platforms, LLC and affiliated companies in the Telit corporate group (together “Telit”, “Company”, “we” or “us”) take to protect the personal data that we process about our customers and other business related personal data.  

Telit is committed to the protection of the personal data that we process about you in line with the data protection principles set out in the European Union’s (“EU”) General Data Protection Regulation 2016 (“GDPR”).  

In respect of personal data that is collected or otherwise processed as part of the services that we offer (see Section 2.2. below), the controller in respect of your personal data is the entity with which your employer has a contractual relationship for the provision of those services. A list of entities is provided in Annex 1. If you are unsure which entity is the controller in respect of your personal data, you can contact us using the following contact details: privacy@telit.com. 

Telit Communications PLC, Cannon Place, 78 Cannon Street, London EC4N 6AF, England or its subsidiaries are the data controllers in respect of all other processing activities outlined in this Policy. 

2. WHAT PERSONAL DATA WE COLLECT AND WHY? 

We may source, use and otherwise process your personal data in different ways. In all cases we are committed to protecting the personal data that we process.  

In each of the sections listed below, we describe how we obtain your personal data and how we will treat it.  

Section 2.1 Representatives of our Existing or Prospective Customers and Vendors 

Section 2.2 Personal Data related to the Services that we Offer 

Section 2.3 Visitors to our Premises 

Section 2.4 Website Visitors 

2.1 Representatives of our Existing or Prospective Customers and Vendors 

- Sources of personal data 

We may obtain your personal data from the following sources: 

a.) from you directly, 

b.) from a company that employs you, if you are an employee of our customer, 

c.) from partners with whom we have a relationship; 

d.) during networking events that we have either hosted, or sponsored, or attended; and/or 

e.) from publicly available sources (for example, your company website or social media sites). 

B - Personal data that we collect and process  

We may collect the following categories of personal data relating to our corporate customers’ employees, officers, authorised signatories, and other associated individuals.  This may include: 

a.) name; 

b.) name of employer; 

c.) business address;

d.) business email address;  

e.) business telephone number; and/or 

f.) job title. 

For the purposes of anti-money laundering requirements, Company may also collect the following: 

a.) Name; 

b.) date of birth; 

c.) address; 

d.) information from utility bills; 

e.) copies of passports; 

f.) copies of driving licences; 

g.) nationality; 

h.) bank details (account numbers, sort codes); 

i.) police contact certificate (occasional use). 

 

C - Why do we collect your personal data and what are our lawful bases for it? 

Representatives of our Existing or Prospective Customers and Vendors

We may use your personal data to:  Our lawful basis for doing so is:    Our legitimate interests in doing so are:  
Provide you with our products or services or receive products or services from you

 

Legitimate Interest  Efficiently fulfil our contractual and legal obligations  

Management reporting (including at an intra-group level) 

Establish and manage our relationship Efficiently fulfil our contractual and legal obligations  

 

Account management 

 

Exercise or defend legal claims  

 

Understand the market in which we operate  

Management reporting (including at an intra-group level) 

Learn about how our products and services are or may be used 

 

Understand the market in which we operate  

 

Management reporting (including at an intra-group level) 

 

Account management 

 

Manage security Managing security, risk and crime prevention, including anti-money laundering 

Management reporting (including at an intra-group level) 

Let you know about our products, services and events that may be of interest to you by letter, telephone, email or other forms of electronic communication Promote our products and services 

Management reporting (including at an intra-group level) 

Anti-money laundering, sanctions lists and other laws and regulations that may apply to Telit   

Legal obligation

Managing risk, prevention of crime and anti-money laundering 

 

 

If you object to us using your contact details for these purposes, including direct marketing, please send an email to us using the following email address:  privacy@telit.com.  

Where we use your email to communicate marketing information to you we will seek your prior consent where required to do so by law. 

2.2 Personal data related to the services that we offer 

- Sources of personal data 

Your personal data may be processed when our corporate customers use any if the following services that we offer, if the data flowing through these services relate to you: 

a.) Connectivity – a management platform for cellular connectivity (SIM) services provided to corporate customers 

b.) IoT Platform and related Professional Services – a cloud based-solution that allows corporate customers to connect an array of and handle the data collected by these devices 

c.) Modules – Programmable hardware devices with telecommunication capabilities that corporate customers embed in their own products. 

d.) SecureWise – a solution providing secure remote access to administer and measure the performance of factory floor machines of corporate customers 

B - Personal data that we collect and process 

We may collect the following categories of personal data relating to our corporate customers’ end-users: 

a. ) Connectivity: Call Data Record (CDR) which contains various meta-data attributes of the transmission, such as time, volume of transmission (in KB), transmission duration, completion status, source number, and destination number. SIM uptime, session duration; IP Address; the content of SMS; cell tower data/ signalling information; approximate geolocation; communication data transmitted to/from the SIM. 

b.) IoT Platform and related Professional Services: the categories and nature of the personal data processed is wholly determined by the corporate customer using this service. 

c.) Modules: SIM number and device number (IMEI). 

d.) SecureWise: usernames of corporate customer’s employee using the service 

 

C - Why do we collect your personal data and what are our lawful bases for it? 

Data relating to you flowing through the products and services we provide our corporate customers 

We may use your personal data to:  Our lawful basis for doing so is:    Our legitimate interests in doing so are:  
Provide our corporate customer with our products or services  

 

Legitimate Interest  Efficiently fulfil our contractual and legal obligations  

Management reporting (including at an intra-group level) 

Establish and manage our relationship   Efficiently fulfil our contractual and legal obligations  

 

Account Management 

 

Exercise or defend legal claims  

 

Understand the market in which we operate  

Management reporting (including at an intra-group level) 

Learn about how our products and services are or may be used  

 

Understand the market in which we operate  

Management reporting (including at an intra-group level) 

Account Management 

Demonstration to prospective customers (IoT Platform and Professional Services only)  Legitimate Interest   

Promote and market our products to prospective customers 

 

2.3 Visitors to Our Premises 

A - Sources of personal data 

We may obtain your personal data from you directly and/or from our systems’ records. 

B - Personal data that we collect and process  

a.) name; 

b.) business contact details; 

c.) organisation; 

d.) role; and/or 

e.) image (for example, from CCTV cameras at our premises in Italy, Cyprus and France.

C - Why do we collect your personal data and what are our lawful bases for it? 

Visitors to our Premises 

We may use your personal data to:   Our lawful basis for doing so is:   

 

Our legitimate interests in doing so are:  
Manage security  Legitimate Interest  Managing security, risk and crime prevention 

 

Maintain records of visitors to our premises   Management reporting 

 

If you object to us using your personal data for these purposes, please send an email to us using the following email address:  privacy@telit.com. 

2.4 WEBSITE VISITORS 

A - Sources of personal data 

We may obtain your personal data from the following sources: 

a.) from you directly (for example, by filling in forms on the website. 

b.) when you register to use the website or for a trial period; 

c.) subscribe to any of our services; 

d.) request further information via the website 

e.) when you report a problem with the website;  

f.) from your device or browser; and/or  

g.) if you contact us, we may keep a record of that correspondence. 

 

To opt-out of all Telit communication, click here.

 

B - Personal data that we collect and process  

a.) name;  

b.) username;  

c.) email address; 

d.) phone number; 

e.) postal address; 

f.) bank details; 

g.) job title; 

h.) operating system;  

i.) browser type;  

j.) login information; 

k.) products or services you viewed or searched for; 

l.) other website data, including page response times, download errors, length of visits to certain pages, page interaction information (such as scrolling, clicks, and mouse-overs), and methods used to browse away from the page; 

m.) cookie data (for more information please see our Cookie Notice:  www.telit.com/cookie-policy 

n.) preferences regarding online marketing;  

o.) IP address; 

p.) website addresses of social media profiles; 

q.) website pages visited including time stamp; and/or 

r.) online purchase history.

 

C - Why do we collect your personal data and what are our lawful bases for it? 

Website Visitors 
We may use your personal data to:   Our lawful basis for doing so is:   

 

Our legitimate interests in doing so are:  
Provide our website services to you  Legitimate Interest  Website management  

 

Promote our products and services 

 

Account management 

 

Notifying you of any changes to our products and services 

 

Provide you with password reminders  

 

Notify you that a particular service has been suspended for maintenance 

Establish and manage our relationship  Understand the market in which we operate  

 

Management reporting (including at an intra-group level) 

 

Account management 

 

Make suggestions and recommendations to you about products or services that may interest you 

 

Learn about our websites(s) users’ browsing patterns and the performance of our website(s)  Website management, including troubleshooting, data analysis, testing, research, statistical and survey purposes 

 

Manage security  Managing security, risk and crime prevention 

Management reporting on security incidents (including at an intra-group level)  

Let you know about our products, services and events that may be of interest to you by letter, telephone, email or other forms of electronic communication 

 

Promote our products and services 

Management reporting (including at an intra-group level) 

Learn about how our products or services may be used  

 

Understand the market in which we operate  

Management reporting (including at an intra-group level)  

 

 

 

If you object to us using your personal data for these purposes, including direct marketing, please send an email to us using the following email address:   privacy@telit.com.  

We will seek your prior consent, where required to do so by law, where we: 

a.) use cookies or similar technologies to fulfil this purpose; and/or 

b.) use your email to communicate marketing information to you. 

 

3. WHO DO WE SHARE YOUR PERSONAL DATA WITH 

We do not sell your personal data to third parties.   

Affiliates 

We may share your personal data with our affiliates, subsidiaries and parent company. 

Our Service Providers 

We may disclose information about you to organisations that provide a service to us, on the understanding that they will keep the information confidential and will comply with the GDPR and other relevant data protection laws. 

We may share your information with the following types of service providers:

a.) our distributors who may contact you regarding Telit products and services, if you indicated your desire to receive such offers; 

b.) technical support providers who assist with our website and IT infrastructure; 

c.) third party software providers, including ‘software as a service’ solution providers, where the provider hosts the relevant personal data on our behalf; 

d.) professional advisers such as solicitors, accountants, tax advisors, auditors and insurance brokers; 

e.) providers that help us generate and collate reviews in relation to our products and services; 

f.) our advertising and promotional agencies and consultants and those organisations selected by us to carry out marketing campaigns on our behalf; and/or 

g.) providers that help us store, collate and organise information effectively and securely, both electronically and in hard copy format (e.g. cloud service providers), and for marketing purposes. 

Content that you post on Telit’s Technical Forum may be viewable by other users of the Website and Internet users in general, along with your username on the Website. 

Company Mergers and Takeovers 

We may transfer your personal data to potential purchasers and their advisors, subject to appropriate confidentiality obligations, in the event we decide to dispose of all or parts of our business. 

Legal and Regulatory Enforcement 

If you have breached the Terms, abused your rights to use the website, or violated any applicable law. Your information may be shared with competent authorities and with any third party, if we believe it is necessary or justified. 

4. TRANSFERS OF PERSONAL DATA OUTSIDE THE EU/EUROPEAN ECONOMIC AREA 

If and when transferring your personal data outside the EU or European Economic Area (“EEA”), we will only do so using one of the following safeguards: 

a.) the transfer is to a non-EEA country that has been the subject of an adequacy decision by the EU Commission; 

b.) the transfer is covered by a contractual agreement, which covers the GDPR requirements relating to transfers to countries outside the EEA;  

c.) the transfer is to an organisation which has binding corporate rules approved by an EU data protection authority; or 

d.) the transfer is to an organisation in the US that is EU-US Privacy Shield certified.  

International transfers to our affiliates, subsidiaries and parent company are governed by EU Commission-approved Standard Contractual Clauses for Controllers and, where relevant, for Processors. 

We may also transfer your data to third-party vendors outside the EU, such as our customer relationship management system and due diligence providers e.g. Salesforce and Amazon Web Services (AWS). Where we do so, the Standard Contractual Clauses or other safeguards approved by the EU Commission are in place to safeguard that personal data. 

You may request a copy of these agreements by contacting us using the following email address:  privacy@telit.com. 

5. YOUR RIGHTS 

If the EU’s GDPR applies to the processing of your personal data, the GDPR provides you with certain rights in relation to the processing of your personal data, including to: 

  • Request access to personal data about you (commonly known as a “data subject access request”). This enables you to receive a copy of the personal data we hold about you, and to check that we are lawfully processing it. 
  • Request rectification, correction, or updating to any of the personal data that we hold about you. This enables you to have any incomplete or inaccurate information we hold about you corrected. 
  • Request personal data provided by you to be transferred in machine-readable format (“data portability”). 
  • Request erasure of personal data. This enables you to ask us to delete or remove personal data where there is no good reason for us continuing to process it. You also have the right to ask us to delete or remove personal data where you have exercised your right to object to processing (see below). 
  • Request the restriction of processing of your personal data. This enables you to ask us to suspend the processing of personal data about you (e.g. if you want us to establish its accuracy or the reason for processing it). 
  • Object to the processing of your personal data in certain circumstances. This right may apply where the processing of your personal data is based on the legitimate interests of Company, as explained above, or where decisions about you are based solely on automated processing, including profiling.  

These rights are not absolute and are subject to various conditions under:  

  • applicable data protection and privacy legislation; and  
  • the laws and regulations to which we are subject. 

If at any time you decide that you do not want to be contacted for any purpose or if you would like to exercise any of your rights as set out above, you can contact us by emailing the following email address:  privacy@telit.com. 

6. RETENTION PERIOD 

We will keep and process your personal data only for as long as is necessary for the purposes for which it was collected in connection with your relationship with us, unless we have a legal right or obligation to retain the data for a longer period, or the data is necessary for the establishment, exercise or defense of legal claims.  

ANNEX 1: TELIT ENTITIES 

EU ENTITIES 

Telit Entity  Country 
Telit Communications PLC  England 
Telit Automotive Solutions S.a.r.l.  France 
Telit Communications SpA  Italy 
Telit Wireless Solutions GmbH   Germany 
Telit Communications Spain SL  Spain 
Telit Communications Cyprus Ltd.  Cyprus 
Telit Technologies (Cyprus) Ltd.  Cyprus 
Telit Automotive Solutions NV  Belgium 

ENTITIES OUTSIDE THE EU 

Telit Entity  Country 
Telit Wireless Solutions, Inc.   United States  
Telit Wireless Solutions Tecnologia E Serviços Ltda Brazil 
Telit Wireless Solutions Co Ltd  Republic of Korea 
Telit Wireless Solutions Ltd.  Israel 
Telit Wireless Services Ltd.  Israel 
Telit Wireless Solutions (Pty) Ltd. Republic of South Africa 

 

Telit Wireless Solutions Hong Kong Limited  Hong Kong 
Telit Wireless Solutions (Australia) Pty Limited Australia 
Telit IoT Platforms, LLC   United States  
Telit Wireless Solutions (Shenzen) Ltd.  China 
Telit Wireless Solutions Japan KK  Japan 
Telit Wireless Solutions (Shanghai) Ltd   China 
Telit Wireless Solutions Taiwan Limited   Taiwan 
Telit Communications India Private Limited India