Your privacy is important to us. This Privacy Notice explains what personal data we process, how we process it, and for what reasons.
Please note that we will ask for your consent before using your personal data for a purpose other than those that are set out in this Privacy Notice.
01. ABOUT TONOMOUS
We are Tonomus, a NEOM Company. Tonomus is the operating/marketing name for NEOM Tech & Digital Company a company that is based in the Kingdom of Saudi Arabia. As a business entity in Saudi Arabia we comply with the laws of Saudi Arabia as well as other global laws and regulations that we might have to comply with.
This privacy notice explains how we use information about you and how we protect your privacy.
Tonomus is responsible for ensuring that we:
- Only collect and use the personal information necessary to provide you with a service, or for our interaction with you
- Maintain the highest standards necessary to protect your personal information
Our contact details
Our Data Privacy Office monitors Tonomus’s compliance with the law and provides advice.
If you have any concerns or questions about how we look after your personal information, contact our Data Privacy Office at the following email address:
02. WHAT PERSONAL INFORMATION DO WE COLLECT?
Personal information is anything that identifies and relates to a living person. It can include information that when put together with other information can identify a person.
At NEOM, and in alignment with the principle of data minimization, we collect personal data only when needed. The data collected may vary depending on your relationship with NEOM.
We usually collect the following information:
- Contact details such as your phone number, Email, address …etc
- CCTV footage taken from our premises
- Information you provide which is required to access and use our systems and receive our services
- Technical information (e.g. IP address / Cookies / system or service-specific technical information)
- If you are a job applicant, we will collect additional information such as employment history, date of birth, nationality and other relevant information to enable us to conduct background checks
03. WHERE DO WE GET YOUR PERSONAL INFORMATION?
We get most of the personal information we use from the following resources:
- Yourself, and from what we learn about you through your interactions with us
- The technology you use to access our systems and receive our services
- Information from publicly available sources within the boundaries of the law
- In certain situations, we might obtain data from additional resources to the ones mentioned above (e.g. background checks in the hiring process)
04. WHY DO WE NEED YOUR PERSONAL INFORMATION?
We only use data for the purpose it was collected for, and we may need to use your personal information to:
- Carry out our internal business purposes, such as corporate transactions, audits, and data analysis
- Comply with legal or contractual requirements
- Ensuring public safety and security on premises
- Deliver services and support to you
- Provide you with access to our systems to enable you to receive our services
- Help investigate any worries or complaints you have about our services
- Help with research and planning of new services and improve current services
- Prevent and detect crime and fraud
We sometimes store small files called cookies on your computer or other device to help improve your experience on our website. We collect web statistics automatically about your visit to our site based on your IP address. This information is used to help us in improving your experience on our website.
06. WHO DO WE SHARE YOUR PERSONAL INFORMATION WITH
We only share information if necessary and in compliance with applicable regulations, for example:
- Sometimes we have a legal duty to provide personal information to other organizations. This includes disclosures we are required to make by law, and to detect or prevent fraud
- We may share your personal information with a range of organizations to store personal information on our behalf or help deliver our services. When we do this, we always have an agreement in place to make sure that the organization complies with data protection law to keep your information safe
- We also share some personal information within the wider NEOM Company group to ensure the successful delivery of services
When we share your information, we make sure the organization it is sent to has the required level of data protection in place and we take additional steps to protect your information.
07. HOW WE PROTECT YOUR INFORMATION
We work hard to ensure that the records we hold about you are looked after securely, and are only available to those who have a right to see them. One of the ways we do this is by implementing technical and organizational measures, such as:
- Controlling access to systems and networks
- Training of staff so they understand how to look after your information
- Putting in place controls over where data is stored
- Deleting personal information when it is no longer needed
08. HOW LONG DO WE KEEP YOUR PERSONAL INFORMATION
Your personal data is only stored for as long as it is necessary, according to defined retention periods, for the purposes for which it was collected, and for satisfying any legal, regulatory, accounting or reporting requirements. This length of time may vary depending on individual circumstances. We regularly review our data retention period to ensure we are not keeping your data for longer than necessary.
Your rights in relation to your personal information that we collect and use
Under applicable laws, you may have certain rights in relation to your personal data. These rights may include:
- Right to access the personal data we hold of you
- Right to receive your personal data in Tonomus’s possession
- Right to be informed of the purpose concerning the collection and processing of your personal data
- Right to restrict processing in certain cases
- Right to rectify and update your personal data in Tonomus’s possession
- Right to ask for your personal data in Tonomus’s possession to be deleted
- Right to withdraw your consent and object to processing
The data subject rights listed above may be subject to certain exemptions, such as:
- When the request contradicts a legal obligation (e.g. we need to keep processing your information in accordance with employment law)
- When compliance with the performance of a contract or to enter into a contract becomes impossible in the absence of your consent
- When we do not control your data (in this case, we can tell you who is your Data Controller and we can help you redirect your request to them)
- When your information may be related to a potential crime: (e.g. your data may be essential for the prevention or detection of a crime, for example fraud, money laundering, or suspicious transactions)
- When the information is necessary for the establishment, exercise or defense of legal claims
09. HOW TO EXERCISE YOUR RIGHT
You can exercise any of these rights, ask questions about how we use your personal data or complain by contacting us at:
10. PRIVACY NOTICE CHANGES
In the future, we may revise or amend this Privacy Notice at any time by amending this page. All changes will be made here so you will always know what information we gather, how we might use that information and whether we will disclose it to anyone.
PLAY A LEADING ROLE IN BUILDING THE cognitive COMMUNITIES OF THE FUTURE
Discover how a career with Tonomus, a NEOM Company, will give you the skills and opportunities to fulfill your potential.