Privacy Policy

Information for the processing of personal data of the website Sibylla S.r.l. with registered office in Viale Luca Gaurico, 283, 00143 - Rome VAT 15953321005. as data controller (hereinafter "Data Controller"), informs you in accordance with EU Regulation 2016/679 ("GDPR") and current national legislation on the protection of personal data that your data will be processed in the following ways and for the following purposes: 1. Subject of processing The Data Controller processes the personal data identifying and not particular (hereinafter "Data" or "Personal Data") communicated by you during navigation on the website of the Data Controller www.sibyllanetwork.com (hereinafter "Site") and, in particular: - email address and any other data provided during the request for information sent to the Data Controller; - first name, last name, email address and any data relating to the hotel and the location provided when registering for the Data Controller’s newsletter; - first name, surname, address, email address, telephone number, place and date of birth, tax code, data on the training and professional path and any other data contained in the CV provided on the occasion of the application sent to the Holder; - navigation data such as the IP addresses or domain names of computers used by users connecting to the Site, the Uniform Resource Identifier (URI) notation of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numeric code indicating the status of the response given by the server (good end, error, etc.) and other parameters related to the operating system and the computer environment of the user. This information is collected through the cookies described in the Cookie Policy of the website to which you refer.2. Purpose and legal basis of the processing Your Data are processed for the following purposes and legal bases: - the performance of the contract and/or pre-contractual commitments: managing a contact request from you; using the website; providing appropriate technical assistance; to carry out the recruitment process correctly (e.g., application management). - the pursuit of a legitimate interest of the Data Controller: managing and maintaining the Site; preventing or discovering fraudulent activities or abuses harmful to the Site; exercising the rights of the Data Controller, such as the right of defence in court. - the fulfilment of legal obligations: to comply with the obligations laid down by laws, regulations, community regulations, orders and prescriptions of the competent authorities. 3. Methods of processing The processing of your Data is carried out - by electronic means - by means of the operations of collection, registration, updating, organization, storage, consultation, processing, modification, selection, extraction, comparison, use, interconnection, blocking, deletion and destruction of Data.

4. Retention of Data
The Data Controller processes the Data for the time necessary to fulfill the above purposes and in any case, subject to the statutory limitation periods, for no more than 5 years for all the processing indicated in point 2, excluding those of: - to carry out correctly the process of selection of staff for whom the retention of data is 1 year from the collection of the CV; - marketing and sending of commercial communications, for which data retention is 2 years from collection; - perform statistics using analytical cookies, processing for which the data retention time is indicated in the Cookie Policy of the website referred to.

5. Provision of Data
The provision of data for the purposes mentioned above is optional. The refusal to provide such Data makes it impossible to follow up the processing indicated in point 2.

6. Access to Data
Your Data may be accessed for the above purposes: - employees and/or collaborators of the Data Controller, in their capacity as data processors and/or internal data processors and/or system administrators; - Group companies or third parties (for example, IT or email marketing service providers, etc.) that carry out outsourcing activities on behalf of the Data Controller, in their capacity as external data processors.

7. Communication of Data
Your Data may be communicated, even without your consent, for the above purposes to control bodies, law enforcement agencies or courts that will process them, at their express request, as independent data controllers for institutional and/or legal purposes during investigations and controls. Your Data may also be disclosed to third parties (for example, partners, freelancers, agents, etc.), as independent data controllers, for the performance of activities instrumental to the above purposes.

8. Transfer of data
Your Data will not be disseminated but may be transferred to the United Kingdom on the basis of agreements signed between the European Union and the United Kingdom or on the basis of adequate guarantees such as adequacy decisions or the subscription of the Standard Contractual Clauses.