In this privacy policy, we, hs-consult gmbh (hereinafter "hsc"), describe how we collect and process personal data. This data protection declaration is not an exhaustive description; other data protection declarations may regulate specific matters. For the purposes of this Privacy Policy, personal data means any information relating to an identified or identifiable person.
Unless otherwise stated in individual cases, hsc is responsible for the data processing described here. Inquiries about data protection can be sent to us by letter or e-mail, enclosing a copy of the ID or passport identifying the user: hs-consult gmbh, Roman Schnider, Langstrasse 175, 8005 Zurich | Telephone: +41 44 500 25 56 | email: roman.schnider@hs-consult.ch
We process personal data in the following categories of processing in particular.
Detailed information can be found in the description of the respective categories of processing in section 5.
The personal data we process depends on your relationship with us and the purpose for which we process it. In addition to your contact details, we also process other information about you or about people who have a relationship with you. This information may also be particularly sensitive personal data, and we collect the following categories of personal data, depending on the purpose for which we process it:
To the extent permitted, we also obtain certain data from publicly accessible sources (e.g. debt collection registers, land registers, commercial registers, press, Internet) or receive such data from our clients and their employees, from authorities, (arbitration) courts and other third parties. In addition to the data that you provide to us directly, the categories of personal data that we receive about you from third parties include, in particular, information from public registers, information that we obtain in connection with official and court proceedings, information in connection with your professional functions and activities (so that we can, for example to conclude and process transactions with your employer with your help), information about you in correspondence and meetings with third parties, creditworthiness information, information about you that people from your environment (family, advisors, legal representatives, etc.) give us so that we can conclude or process contracts with you or with your involvement (e.g. References, your address for deliveries, powers of attorney) Information on compliance with legal requirements such as anti-money laundering and export restrictions, information from banks, insurance companies, sales and other contractual partners of ours on the use or provision of services by you (e.g. payments made, purchases made), information from the media and the Internet about your person (insofar as this is appropriate in the specific case, e.g. in the context of a job application, etc.). e.g. in the context of a job application etc.), your addresses and, if applicable, interests and other socio-demographic data (for marketing), data in connection with the use of the website (e.g. IP address, MAC address of the smartphone or computer, information about your device and settings, cookies, date and time of the visit, pages and content accessed, functions used, referring website, location data).
Provision of services
We primarily process the personal data that we receive from our clients and other persons involved in our client relationships and other contractual relationships with business partners. Our clients' personal data includes the following information in particular:
We process this personal data for the purposes described on the basis of the following legal bases:
When we provide services for our customers, we may also process personal data that we have not collected directly from the data subjects or personal data of third parties. These third parties are usually employees, contact persons, family members or persons who have a relationship with the customers or the data subjects for other reasons. We require this personal data in order to fulfill contracts with our customers. We receive this personal data from our customers or from third parties commissioned by our customers. Third parties whose information we process for this purpose are informed by our customers that we are processing their data. Our customers can refer to this privacy policy for this purpose. The personal data of persons who have a relationship with our customers includes the following information in particular:
We process this personal data for the purposes described on the basis of the following legal bases:
No personal data needs to be disclosed in order to use our website. However, the server collects a range of user information with each visit, which is temporarily stored in the server's log files and is not assigned to a specific person when this general information is used. The collection of this information or data is technically necessary in order to display our website and ensure its stability and security. This information is also collected in order to improve the website and analyze its use. This includes the following information in particular:
We process this personal data for the purposes described on the basis of the following legal bases
If you subscribe to our newsletter, we will use your e-mail address and other contact details to send you the newsletter. You can subscribe to our newsletter with your consent. Your full name and email address, which we store after your registration, are mandatory for sending the newsletter. The legal basis for the processing of your data in connection with our newsletter is your consent to the sending of the newsletter. You can revoke your consent at any time and unsubscribe from the newsletter.
If you participate in an event organized by us, we collect personal data in order to organize and carry out the event and, if necessary, to send you additional information afterwards. We also use your information to inform you about other events. You may be photographed or filmed by us at these events and we may publish this image material internally or externally. This includes the following information in particular:
We process this personal data for the purposes described on the basis of the following legal bases
When you contact us (e.g. by telephone, e-mail or chat) or we contact you, we process the personal data required for this. We also process this personal data when you visit us. In this case, you may have to leave your contact details before your visit or at reception. We store this data for a certain period of time in order to protect our infrastructure and our information.
We use common video and telephone communication software such as "Microsoft Teams" to conduct telephone conferences, online meetings, video conferences and/or webinars ("online meetings"). We process the following information in particular
We process this personal data for the purposes described based on the following legal bases:
You can submit your application for a position with us by post or via the e-mail address provided on our website. The application documents and all personal data disclosed to us will be treated as strictly confidential, will not be disclosed to third parties and will only be processed for the purpose of processing your application for employment with us. Without your consent to the contrary, your application dossier will either be returned to you or deleted/destroyed after the application process has been completed, unless it is subject to a statutory retention obligation. The legal basis for the processing of your data is your consent, the fulfillment of the contract with you and our legitimate interests. We process the following information in particular:
We process this personal data for the purposes described based on the following legal bases:
When we enter into a contract with you to provide a service for us, we process personal data about you or your employees. We need this data in order to communicate with you and make use of your services. We may also process this personal data to check whether there could be a conflict of interest in connection with our activities as auditors and to ensure that we do not enter into any unwanted risks, e.g. with regard to money laundering or sanctions. We process the following information in particular:
We process this personal data for the purposes described based on the following legal bases:
We use cookies on our website. These are small files that your browser automatically creates and that are stored on your end device (laptop, tablet, smartphone, etc.) when you visit our website. Information is stored in the cookie that results in each case in connection with the specific end device used. However, this does not mean that we obtain direct knowledge of your identity. On the one hand, the use of cookies serves to make the use of our website more pleasant for you. For example, we use so-called session cookies to recognize that you have already visited individual pages of our website. These are automatically deleted after you leave our site.
In addition, we also use temporary cookies to optimize user-friendliness, which are stored on your end device for a specified period of time. If you visit our site again to use our services, it is automatically recognized that you have already visited us and which entries and settings you have made so that you do not have to enter them again. On the other hand, we use cookies to statistically record the use of our website and to evaluate it for the purpose of optimizing our offer for you. These cookies enable us to automatically recognize that you have already visited our website when you visit it again. These cookies are automatically deleted after a defined period of time.
The data processed by cookies is required for the purposes mentioned. Most browsers accept cookies automatically. However, you can configure your browser so that no cookies are stored on your computer or a message always appears before a new cookie is created. However, completely deactivating cookies may mean that you cannot use all the functions of our website.
We use the following web analysis tools and re-targeting technologies to obtain information about the use of our website, to improve our Internet offering and to be able to address you with advertising on third-party websites or on social media: Google Analytics and Mailchimp (newsletter). These tools are provided by third-party providers. As a rule, the information collected for this purpose about the use of a website is transmitted to the server of the third-party provider through the use of cookies or similar technologies. Depending on the third-party provider, these servers may be located abroad.
The data is usually transmitted by shortening the IP addresses, which prevents the identification of individual end devices. A transfer of this information by third-party providers only takes place on the basis of legal regulations or as part of order data processing.
We use Google Analytics on our websites, the web analysis service of Google LLC, Mountain View, California, USA, responsible for Europe is Google Limited Ireland ("Google"). Google provides a browser plug-in to deactivate Google Analytics. Google Analytics uses cookies. These are small text files that make it possible to store specific user-related information on the user's device. These enable Google to analyze the use of our website. The information collected by the cookie about the use of our pages (including your IP address) is usually transferred to a Google server in the USA and stored there. We would like to point out that on this website Google Analytics has been extended by the code "gat._anonymizeIp();" in order to ensure an anonymized collection of IP addresses (so-called IP masking). If anonymization is active, Google shortens IP addresses within member states of the European Union or in other contracting states of the Agreement on the European Economic Area, which is why no conclusions can be drawn about your identity. Only in exceptional cases will the full IP address be transmitted to a Google server in the USA and shortened there. Google may associate your IP address with other Google data. For data transfers to the USA, Google has undertaken to sign and comply with the EU standard contractual clauses.
Auf unserer Webseite werden sogenannte Social Media Plugins («Plugins») von Drittanbietern verwendet. Die Plugins sind anhand des Logos des jeweiligen sozialen Netzwerks erkennbar. Über die Plugins bieten wir Ihnen die Möglichkeit, mit den sozialen Netzwerken und anderen Nutzern zu interagieren. Wir setzen auf unserer Webseite folgende Plugins ein: YouTube. Wenn Sie unsere Webseite aufrufen, stellt Ihr Browser eine direkte Verbindung zu den Servern des Drittanbieters her. Der Inhalt des Plugins (z.B. YouTube Videos) wird vom jeweiligen Drittanbieter direkt an Ihren Browser übermittelt und in die Seite eingebunden.Die Datenweitergabe zur Anzeige von Inhalten (z.B. Publikationen auf Twitter) erfolgt unabhängig davon, ob Sie ein Konto bei Drittanbieter besitzen und dort eingeloggt sind. Wenn Sie beim Drittanbieter eingeloggt sind, werden Ihre bei uns erhobenen Daten zudem direkt Ihrem beim Drittanbieter bestehenden Konto zugeordnet. Wenn Sie die Plugins aktivieren, werden die Informationen ausserdem in dem sozialen Netzwerk veröffentlicht und dort Ihren Kontakten angezeigt. Zweck und Umfang der Datenerhebung und die weitere Bearbeitung und Nutzung der Daten durch die Drittanbieter sowie ihre diesbezüglichen Rechte und Einstellungsmöglichkeiten zum Schutz Ihrer Privatsphäre entnehmen Sie bitte den Datenschutzhinweisen der Drittanbieter. Der Drittanbieter speichert die über Sie erhobenen Daten als Nutzungsprofile und nutzt diese für Zwecke der Werbung, Marktforschung und/oder bedarfsgerechten Gestaltung seiner Website. Eine solche Auswertung erfolgt insbesondere auch für nicht eingeloggte Nutzer zur Darstellung von bedarfsgerechter Werbung und um andere Nutzer des sozialen Netzwerks über Ihre Aktivitäten auf unserer Website zu informieren. Wenn Sie verhindern möchten, dass die Drittanbieter die über unseren Webauftritt gesammelten Daten nicht Ihrem persönlichen Profil in dem jeweiligen sozialen Netzwerk zuordnen, müssen Sie sich vor Ihrem Besuch unserer Webseite beim entsprechenden sozialen Netzwerk ausloggen.
Social media plugins ("plugins") from third-party providers are used on our website. The plugins can be recognized by the logo of the respective social network. We offer you the opportunity to interact with the social networks and other users via the plugins. We use the following plugins on our website: YouTube. When you visit our website, your browser establishes a direct connection to the third-party provider's servers. The content of the plugin (e.g. YouTube videos) is transmitted directly to your browser by the respective third-party provider and integrated into the page, and the data transfer for the display of content (e.g. publications on Twitter) takes place regardless of whether you have an account with the third-party provider and are logged in there. If you are logged in with the third-party provider, your data collected by us will also be assigned directly to your existing account with the third-party provider. If you activate the plugins, the information will also be published on the social network and displayed to your contacts there. The purpose and scope of the data collection and the further processing and use of the data by the third-party providers as well as your rights in this regard and setting options to protect your privacy can be found in the third-party providers' data protection notices. The third-party provider stores the data collected about you as usage profiles and uses these for the purposes of advertising, market research and/or the needs-based design of its website. Such an evaluation is also carried out in particular for users who are not logged in to display needs-based advertising and to inform other users of the social network about your activities on our website. If you wish to prevent the third-party providers from assigning the data collected via our website to your personal profile in the respective social network, you must log out of the respective social network before visiting our website.
We use Mailchimp software to send our newsletters. This software can be used to send and analyze newsletters. To carry out this analysis, we collect device and access data. To collect this data, the newsletter contains a pixel and click tracking. The newsletter and the websites that can be accessed from this newsletter are also tracked using cookies. A pixel is an image file that is stored on the recipient's device. With the help of these technologies, we receive information as to whether the newsletter has arrived, has been opened and what content has been clicked on. We use this information to improve our newsletter and our offers. The setting of a pixel can be prevented by deactivating HTML in the mail program (varies depending on the mail program).
We only pass on your data to third parties if this is necessary for the provision of our services, if these third parties provide a service for us, if we are legally or officially obliged to do so or if we have an overriding interest in passing on the personal data. We will also pass on personal data to third parties if you have given your consent or requested us to do so. Not all personal data is transmitted in encrypted form as standard. Unless explicitly agreed otherwise with the customer, accounting data, payroll administration data, payslips and salary statements are transmitted unencrypted, and the following categories of recipients may receive personal data from us:
We conclude contracts with service providers who process personal data on our behalf, obliging them to guarantee data protection. The majority of our service providers are located in Switzerland or in the EU/EEA. Certain personal data may also be transferred to the USA (e.g. Google Analytics data) or, in exceptional cases, to other countries worldwide. If it is necessary to transfer data to other countries that do not have an adequate level of data protection, this is done on the basis of the EU standard contractual clauses (e.g. in the case of Google) or other suitable instruments.)
We process and store your personal data for as long as is necessary for the fulfillment of our contractual and legal obligations or otherwise for the purposes pursued with the processing, i.e., for example, for the duration of the entire business relationship (from the initiation, execution to the termination of a contract) as well as beyond that in accordance with the statutory retention and documentation obligations. It is possible that personal data may be stored for the period in which claims can be asserted against our company (i.e. in particular during the statutory limitation period) and insofar as we are otherwise legally obliged to do so or legitimate business interests require this (e.g. for evidence and documentation purposes). As soon as your personal data is no longer required for the above-mentioned purposes, it will be deleted or anonymized as far as possible. Shorter retention periods of twelve months or less generally apply to operational data (e.g. system protocols, logs).
We take appropriate technical and organizational security precautions to protect your personal data from unauthorized access and misuse, such as issuing instructions, training, IT and network security solutions, access controls and restrictions, encryption of data carriers and transmissions, pseudonymization and controls.
As part of our business relationship, you must provide the personal data that is necessary for the establishment and implementation of a business relationship and the fulfillment of the associated contractual obligations (you generally do not have a legal obligation to provide us with data). Without this data, we will not be able to enter or process a contract with you (or the entity or person you represent). The website cannot be used if certain information to ensure data traffic (such as IP address) is not disclosed.
You have the following rights in connection with our processing of personal data:
To assert these rights, please contact the contact specified in section 1. Please note, however, that we reserve the right to enforce the restrictions provided for by law, for example if we are obliged to store or process certain data, have an overriding interest in doing so (to the extent that we are entitled to rely on this) or use them for the assertion of requirements. If you incur any costs, we will inform you in advance.
We expressly reserve the right to change this data protection declaration at any time.
Last changed: December 2023