Datenschutzrichtlinie
für aleris.com

(nachstehend “Datenschutzrichtlinie“)

 

This Privacy Policy pertains to users (“you” or “your”) residing in the European Economic Area (EEA) who access or use this Website. If you are residing in the United States, please view our US Privacy Policy.

We are pleased that you are visiting our website and thank you for your interest in our company and our services. It is important for us to protect your privacy when you use our website.

Als Datenverantwortlicher im Sinne der EU-Datenschutz-Grundverordnung der Website

aleris.com

(nachstehend auch “website“),

möchten wir

die Aleris Corporation
25825 Science Park Drive, Suite 400
Beachwood, Ohio, 44122
USA

E-mail:  dataprivacy@aleris.com

(nachstehend auch “wir“ oder “Aleris“)

Sie unten über die Verarbeitung Ihrer personenbezogenen Daten und Ihre Rechte als betroffene Person bei Ihrer Nutzung der Website informieren.

Falls im Einzelfall Tochtergesellschaften der Aleris Corporation in der EU Datenverantwortliche für bestimmte Datenverarbeitungsoperationen im Sinne der EU-Datenschutzgesetzgebung sind, werden wir Sie unten dementsprechend informieren (siehe insbesondere 7 7 „Online-Bewerbungen“).

Ihre personenbezogenen Daten werden nur in Einklang mit den gesetzlichen Datenschutzbestimmungen der Europäischen Union, insbesondere der EU-Datenschutz-Grundverordnung (nachstehend „DSGVO“), ergänzt durch das Bundesdatenschutzgesetz, ab dem 2525. Mai 20182018 anwendbar (nachstehend „BDSG“), und anderen gesetzlichen Bestimmungen zum Datenschutz (zusammen als „Datenschutzgesetzgebung“ bekannt) verarbeitet.

Wenn Sie die DSGVO gerne selbst konsultieren möchten, können Sie sie online unter: https://eur-lex.europa.eu/legal-content/DE/TXT/HTML/?uri=CELEX:32016R0679.

This data protection policy applies to the website retrievable from the domain aleris.com and other Aleris websites which explicitly include the following statements as their data protection policy. However, the following statements do not apply to the websites of other providers, such as those linked to by this website. The terms used, such as “personal data” or their “processing”, correspond to the definitions in Art. 4 GDPR.

 

Überblick

  1. Gegenstand des Datenschutzes, rechtliche Grundlagen und Quellen
  2. Protokolldateien
  3. Kommunikation per E-Mail und Kontaktformular
  4. Kunden-Login
  5. Cookies
  6. a) Absolut notwendige Cookies
  7. b) Zusätzliche, eigene Cookies
  8. c) Cookies von Drittanbietern
  9. Tracking-Tools
  10. Online-Bewerbungen (Karriereportal)
  11. Ontvangers van persoonsgegevens
  12. Gegevensverwerking in derde landen
  13. Sicherheit
  14. Speicherfrist
  15. Ihre Rechte
  16. Änderungen

 

1. Object of data protection, legal foundations and sources

The object of data protection are personal data. Personal data means any information relating to an identified or identifiable natural person (‘data subject’). Your personal data are therefore all the data that enables you to be identified as a person, such as your name, your address, your telephone number or your email address. Personal data are also the information that is necessarily generated when you use our website, such as beginning, end and scope of use or your IP address.

We only process your data when an applicable legal provision allows it. In particular we base the processing of your data on the following legal foundations:

  • Consent (Art. 6(1)(a) GDPR): We will only process certain data on the basis of your prior specific and freely given consent. You have the right to withdraw your consent with future effect at any time.
  • Performance of a contract or pre-contractual activities (Art. 6(1)(b) GDPR): We need certain data from you to prepare and execute your contract with Aleris.
  • Compliance with a legal obligation (Art. 6(1)(c) GDPR): In addition, we process your personal data to comply with statutory obligations, such as record-keeping obligations under commercial and tax law.
  • Pursuit of legitimate interests (Art. 6(1)(f) GDPR): Aleris will process certain data to protect its interests or those of third parties. This only applies when your interests do not override them in the specific case, however.

Please note that this is not a complete or definitive list of the possible legal grounds; these are only examples intended to make the legal foundations of data protection law more transparent. Further information on the legal foundations of individual data processing activities on our website can be found below.

Ihre personenbezogenen Daten kommen insbesondere von Ihnen selbst, teilweise durch Ihre Nutzung unserer Website, aus Ihren Kontaktanfragen und möglicherweise aus den Informationen, die Sie uns vor einer Vertragsbeziehung zur Verfügung stellen.

 

2. Server logfiles

You can visit our website without providing any information about yourself. Your visit to our website may mean that the following access information is stored:

  • IP-Adresse des anfragenden Geräts,
  • abgerufene Datei,
  • http-Antwortcode,
  • die Website, von der Sie auf unsere Website gekommen sind (Referrer-URL),
  • Datum, Uhrzeit und Zeitzone der Serveranfrage,
  • Browsertyp und -version,
  • vom anfragenden Gerät verwendetes Betriebssystem,
  • Suchbegriff, durch den die Seite gefunden wurde, zum Beispiel durch Google.

We process these data on the basis of Art. 6(1)(f) GDPR to provide the website, to ensure its technical operation and the security of our IT systems. We do so in the interest of enabling and permanently maintaining the use of our website and its technical functionality. These data are processed automatically when the website is retrieved. Without this processing you cannot use our website. We do not use this data for the purpose of determining your identity.

The automatically collected data are not generally kept for longer than required , unless exceptionally we need them for the above purposes for a longer period. In this case we delete the data without delay when the purpose ceases to apply.

Sie können der Erhebung und Speicherung Ihrer Server-Protokolldateien nicht widersprechen, da sie für das reibungslose Funktionieren der Website absolut notwendig sind.

 

3. Communication by email and contact form

Wenn Sie uns per E-Mail kontaktieren, werden Ihre freiwillig bereitgestellten Kontaktdaten (z. B. Name, E-Mail-Adresse) nur für den Zweck der Aufzeichnung, der eventuellen Beantwortung Ihrer Anfrage und der technischen Verwaltung erhoben, verarbeitet und genutzt.

Under the “Contact” heading you can also get in touch with us by means of a contact form. If you use this contact form, we collect and store the following data:

  • Vorname,
  • Nachname,
  • E-Mail-Adresse,
  • Grund für Kontaktaufnahme,
  • Nachricht.

Auch können Sie auf freiwilliger Basis das Folgende angeben:

  • Akademischer Titel,
  • Unternehmen,
  • Telefonnummer
  • Stadt,
  • Branche.

Ihr Browser versendet die Daten, die Sie unserem Server bereitstellen, wo sie zu einer E-Mail konvertiert und an uns verschickt werden.

Data transferred in the course of communication by contact form or email is processed on the basis of Art. 6(1)(b) GDPR, if it relates to pre-contractual activity, or of Art. 6(1)(f) GDPR. In the latter case we have a legitimate interest in processing contact enquiries addressed to us voluntarily.

Wir löschen die Daten, die Sie bereitstellen, sobald der Zweck, für den sie erhoben wurden, aufhört zu bestehen.

To the extent that your data are processed on the basis of legitimate interests, you can object to the storage of your personal data at any time. In this case we will no longer process your data to the extent that we cannot demonstrate a legitimate interest for doing so, and are not otherwise obliged by law to store them. To exercise your right to object to the storage of data, please contact us in writing, by fax or email.

Please note that we cannot guarantee complete data security, however, especially for communication by contact form and email. You should therefore refrain from sending us confidential information, such as bank or credit card details, via these channels. To send confidential information we recommend that you use a secure means of communication, such as the postal service.

 

4. Customer log-in

We set up direct, password-protected access for all customers who register with us. As a customer you can receive information about our products (e.g. Surplus Stock Lists) here, view any contract details and manage your master/contact data.

Processing takes place for the purpose of providing contractual services and additional customer services on the basis of Art. 6(1)(b) GDPR (performance of a contract to which the data subject is party) or Art. 6(1)(c) to the extent that the storage is to comply with statutory record-keeping obligations. The information designated as obligatory is required to use the customer log-in. You can also provide additional information voluntarily. Your voluntary disclosures are stored on the basis of Art. 6(1)(f) GDPR, since we have a legitimate interest in processing the data you provide voluntarily. You can object to the processing of voluntarily provided data at any time.

With the function “stay logged-in” we would like to make your visit to our website as convenient as possible. This function enables you to use our website without having to log in again every time. For security reasons you are nonetheless asked to enter your password again when you change your personal data or wish to place an order. We recommend that you do not use this function if your device is accessible to more than one user. We should point out that the “stay logged-in” function is not available if you have set your browser so that cookies are deleted automatically after every session or you have otherwise deactivated cookies (see Point 5).

 

5. Cookies

The website uses cookies and similar technologies such as HTML5 storage (hereafter known collectively as “cookies”) to optimise the design of the website. They facilitate navigation and enable the website to be as user-friendly as possible.

Cookies are small identifiers that our webserver sends to your browser and that your device stores, if the default settings are unchanged. They can be used to determine whether your device has already communicated with us. This means they help to make website use more convenient for you and to optimise our offering. We make a distinction between cookies that are absolutely necessary for technical reasons, those set by our website and those set by third parties. Detailed information on the type, function, purposes, legal grounds and options for objecting to data processing when cookies are used can be found in the following section:

When you use our website we notify you of the use of cookies. You can object to the storage of cookies at any time by selecting “accept no cookies” in your browser settings. Please refer to the help function of your browser for how to manage and delete cookies in your browser settings. You can also deactivate all cookies by means of free browser add-ons, such as “Adblock Plus“ (adblockplus.org/de) in combination with the “EasyPrivacy“ list(easylist.to) or ”Ghostery“ (ghostery.com). If you do not accept any cookies, this may limit the functionality of the website, however.

 

a) Absolut notwendige Cookies

Auf unserer Website verwenden wir die folgenden für die Funktionsweise unserer Website absolut notwendigen Cookies, an deren Speicherung wir ein berechtigtes Interesse haben, da wir sonst unsere Website mit bestimmten elementaren Funktionen nicht zur Verfügung stellen könnten.

Beschreibung Funktion/Zweck Speicherfrist
isEnabled=true Verfolgt, ob der Browser des Nutzers Javascript ausführen kann, um zu entscheiden, ob die durchsuchbare Dropdown-Schnittstelle bereitgestellt oder ein einfaches HTML-Dropdown verwendet werden soll. Sitzung
iFrame Height Speichert die iFrame-Höhe, die berechnet wurde, um sie später bei der erneuten Anzeige in iFrame wiederzuverwenden.  Sitzung

Data processing takes place to further our legitimate interests on the basis of Art. 6(1)(f) GDPR. Our legitimate interest is therefore derived from the purposes described.

 

b) Zusätzliche, eigene Cookies

Additional own cookies that are not absolutely necessary for the use of the website (also known as “first-party cookies”) perform important tasks. They enable convenient surfing on our website, by completing forms in advance, for example Furthermore they enable us to approach you with individual offers. We use the following additional own cookies on our website.

Beschreibung Funktion/Zweck Speicherfrist
JSESSSIONID
(Sicher)
Identifizieren eine Sitzung des Nutzers während seiner Interaktion mit der Website.  2 Stunden

Data processing takes place to further our legitimate interests on the basis of Art. 6(1)(f) GDPR. Our legitimate interest is therefore derived from the purposes described.

 

c) Cookies von Drittanbietern

To integrate contents or functions from third-party providers (see the points below) we set cookies from third-party providers (also known as “third-party cookies”), which provide information that you have accessed this website, for example. Please visit the websites of the third-party providers for more information about their use of cookies. We use the following

Cookies von Drittanbietern:

Beschreibung Funktion/Zweck Drittanbieter Speicherfrist
Es werden keine Nutzer-identifizierenden Inhalte verwendet.
(dauerhaft)
Google Analytics setzt im Portal ein Cookie, um das Nutzerverhalten bei der Interaktion mit der Seite und andere aggregierten Statistiken zu überwachen. https://developers.google.com/analytics/devguides/collection/analyticsjs/cookie-usage Google Analytics 2 Jahre (Entscheidung von Google)
Google-Authentifizierungs-Token
(Sicher)
Von Google verwendet, um ein Authentifizierungs-Token zu speichern, um Nutzer zu unterscheiden. https://www.google.com/policies/technologies/types/ Google Entscheidung von Google
Kryptografisches Rautezeichen der Kandidaten LinkedIn MemberID
(Sicher)
Von LinkedIn verwendet, um den eingeloggten LinkedIn Nutzer zu identifizieren. https://www.linkedin.com/legal/cookie-policy LinkedIn Entscheidung von LinkedIn
NREUM
NRAGENT
JSESSIONID
In einigen Ausführungs-Metriken verwendet, die abgefragt werden (wenn erforderlich).
https://docs.newrelic.com/docs/browser/new-relic-browser/page-load-timing-resources/new-relic-cookies
New Relic Entscheidung von New Relic

Data processing takes place to further our legitimate interests on the basis of Art. 6(1)(f) GDPR. Our legitimate interest is therefore derived from the purposes described.

Weitere Einzelheiten und Verweigerungen der Datenverarbeitung, wenn Dritt-Cookies verwendet werden, sind in den folgenden Beschreibungen der einzelnen Funktionen basierend auf der Nutzung solcher Cookies und ähnlicher Technologien zu finden.

 

LinkedIn

LinkedIn wird betrieben von LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Place, Dublin 2, Irland.

 

If you want to use single sign-on, you’ll be redirected to LinkedIn when you log in. There, you will be asked to log in with username and password, unless you are already logged in to LinkedIn. Of course, Aleris does not take note of your login details.

 

Then you confirm to LinkedIn the transmission of your data to Aleris. The following data is transmitted to Aleris during single sign-on:

 

  • LinkedIn: First and last name, e-mail address, …

 

Aleris creates your user account with the submitted data. There is no permanent link between your user account and your LinkedIn account. For login on the website via LinkedIn a LinkedIn-generated unique token (string of letters and numbers) is saved and exchanged with LinkedIn during the login process for secure authentication. The legal basis for the processing of your personal data in this context is in particular Article 6 (1) sentence 1 (f) GDPR, as we have a legitimate interest in facilitating the login process for interested users.

 

The link from LinkedIn to the website can be removed at any time. You’ll need to delete the connection to “Aleris” in your profile on LinkedIn within the account settings. If you subsequently wish to continue using the website, you may be required to re-register on the website.

 

Zweck und Umfang der Datenerhebung sowie die weitere Verarbeitung und Nutzung Ihrer Daten durch LinkedIn sowie die diesbezüglichen Rechte und Einstellungsmöglichkeiten zum Schutz Ihrer Privatsphäre können Sie der Datenschutzrichtlinie von LinkedIn (https://www.linkedin.com/legal/https://www.linkedin.com/legal/privacy-policy) entnehmen.

New relic

We are using a plug-in of the web analysis service New Relic on this website. This service is provided by New Relic Inc., 188 Spear Street, Suite 1200 San Francisco, CA 94105, USA.

 

This makes it possible to collect statistical reports on the use and speed of the website. The plug-in gives New Relic among others the information that a user has accessed the corresponding website of the offer. In addition to your IP address, cookie-generated information about your use of our Web site is generally transmitted to and stored on a New Relic server in the United States. Data processing takes place on the basis of our legitimate interests within the meaning of Art. 6 (1) (f) GDPR, namely our interest in the analysis, optimization and economical operation of our online offer.

 

On our behalf, New Relic will use this information to evaluate your use of the website, to compile reports on website activity, and to provide us with other services related to website activity and internet usage. The purpose and scope of the data collection, as well as information about the processing and use of the data by New Relic can be found in the New Relic privacy policy: https://newrelic.com/privacy.

 

Die Daten werden gelöscht, sobald sie für unsere Aufzeichnungszwecke nicht mehr benötigt werden.

 

Sie können die Speicherung und Nutzung von Cookies durch New Relic in den Einstellungen Ihres Browsers bzw. mittels Browser-Add-Ons verhindern.

 

New Relic hat sich mit einer EU-US-Privacy-Shield-Zertifizierung beim US-Handelsministerium zur Einhaltung des EU-US-Privacy-Shield-Abkommens zwischen der EU und den USA über die Erhebung, Nutzung und Speicherung von personenbezogenen Daten aus den Mitgliedsstaaten der EU verpflichtet.

Optional haben Sie die Möglichkeit, sich im Wege eines sog. Single-Sign-on mit Ihrem bestehenden LinkedIn-Profil zu registrieren.

 

6. Tracking Tools

This website uses Google Analytics, a web analytics service from Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA (“Google“). Google Analytics uses third-party cookies to identify preferences and how often certain areas of our website are used. The information generated by the cookie about your use of our website (including your abbreviated IP address) is generally sent to a Google Server in the USA and stored there. Data is processed on the basis of our legitimate interests pursuant to Art. 6(1)(f) GDPR, namely our interest in analysing, optimising and operating our online offering economically. Google is certified under the Privacy Shield and so provides a guarantee of its compliance with European data protection legislation.

Google wird diese Informationen in unserem Namen und auf der Grundlage einer Datenverarbeitungsvereinbarung verwenden, um Ihre Nutzung unserer Website zu analysieren, für uns Berichte zu Website-Aktivitäten zu erstellen und uns andere Dienstleistungen bezüglich der Nutzung der Website und des Internets zu erbringen.

We only use Google Analytics with activated IP anonymisation. This means that Google will abbreviate users’ IP address within the member states of the European Union (EU) or other signatories of the treaty creating the European Economic Area (EEA). Only in exceptional cases will the full IP address be sent to a Google server in the USA and abbreviated there. The IP address sent by your browser will not be merged with other Google data.

The data are deleted as soon as they are no longer needed for the purpose for which they were recorded. In our case this is generally after 14 months.

You can prevent the storage of cookies for Google Analytics by adjusting your browser settings accordingly or by means of browser add-ons. In addition you can prevent the data generated by the cookie relating to your use of the website (including your IP address) being sent to Google and the processing of this data by Google by downloading and installing the browser plug-in from the link below: http://tools.google.com/dlpage/gaoptout?hl=de.

Weitere Informationen zur Nutzung von Daten durch Google, Einstellungen und Verweigerungen sind auf den Google-Websites unter den folgenden Links zu finden:

 

7. Online job applications (Career Portal)

You can apply for vacant positions via the Career Portal on our website. Please see our specific privacy policy for the Online Application Portal under (insert the link)

Ontvangers van persoonsgegevens

Ihre personenbezogenen Daten werden von uns nur in dem Ausmaß an externe Empfänger übermittelt, wie dies für die Handhabung oder Bearbeitung Ihrer Anfrage notwendig ist, Sie uns Ihre Einwilligung gegeben haben oder andere rechtmäßige Bevollmächtigungen bestehen.

Externe Empfänger können insbesondere die folgenden sein:

  • Processors: These are service providers that we use to provide services, including in the areas of technical infrastructure and maintenance of our website. Such processors are carefully selected and regularly audited by us to ensure that your privacy is maintained. They may only use the data for the purposes determined by us and on our instructions. Subject to compliance with the conditions of Art. 28 GDPR, we are authorised to use such processors.
  • Public bodies: These are public authorities, state institutions and other public-law entities, such as supervisory authorities, courts of law, public prosecution services or tax authorities. Personal data are only transferred to such public bodies for binding statutory reasons. The legal basis for any such transfer is Art. 6(1)(c) GDPR.
  • Non-public bodies: Other Aleris companies, external service providers and ancillaries to which data are transferred on the basis of a statutory obligation or to further legitimate interests, e.g. tax advisors or auditors. In this case the transfer takes place on the basis of Art. 6(1)(c) and/or (f) GDPR.

 

Gegevensverwerking in derde landen

To the extent that we transfer your data to third countries outside the EU or EEA, we ensure beforehand either that the recipient has an appropriate level of data protection or that you consent to the data transfer. This does not apply to exceptional cases allowed by law. An appropriate level of data protection is guaranteed, for example, by the recipient’s certification under the EU-US Privacy Shield, by means of standard EU contractual clauses or by binding corporate rules (BCR).

 

10. Security

We take technical and organisational security measures to protect your personal data against intentional or chance manipulation, loss, destruction or unauthorised access. Our security measures are adapted in line with the current state of technological knowledge.

Your personal data transferred to us when you use our website are transferred securely in encrypted form. We use the encryption protocol Transport Layer Security (TLS), more widely known under its previous name of Secure Sockets Layer (SSL). Our employees have given a commitment to respect data secrecy.

 

11. Storage period

We only store your personal data for as long as necessary to fulfil its purpose or if you have given your consent, until you withdraw this consent. If you withdraw your consent we will no longer process your personal data, unless we are allowed or even obliged to so by applicable statutory provisions (e.g. by record-keeping obligations under commercial and tax law). We will also delete your personal data when we are obliged by law to do so.

Beachten Sie andernfalls für Einzelheiten zu Speicherfristen für Ihre personenbezogenen Daten bitte die Kommentare in den Abschnitten oben.

 

12. Your rights

You have numerous rights as a data subject. Specifically, these are:

  • Right of access (Art. 15 GDPR): You have the right to information about your personal data stored by us.
  • Right to rectification and erasure (Art. 16 and 17 GDPR): You can require us to rectify incorrect data and erase your data – insofar as the statutory conditions are met.
  • Right to restriction of processing (Art. 18 GDPR): Insofar as the statutory conditions are met, you can require us to restrict the processing of your data.
  • Right to data portability (Art. 20 GDPR): If you have provided us with data on the basis of a contract or consent, you have the right to receive the personal data provided concerning you, in a structured, commonly used and machine-readable format and have the right to transmit those data to another controller.
  • Right to object to data processing based on legitimate interests (Art. 21 GDPR): You have the right to object, on grounds relating to your particular situation, at any time to processing of personal data which is based on point (f) of Article 6(1) GDPR. If you exercise your right to object we will cease processing of your data, unless we can demonstrate compelling legitimate grounds for the processing which override your rights.
  • Opt-out for cookies: You can object to the use of cookies at any time. If you want to opt out from certain cookies, please see our comments under Point 5.
  • Withdrawal of consent (Art. 7 GDPR): If you have consented to the processing of your data, you can withdraw this consent at any time with future effect. This does not affect the validity of the processing of your data until you withdraw consent.
  • Right to lodge a complaint with a supervisory authority (Art. 77 GDPR). You can also lodge a complaint with the competent supervisory authority if you consider that the processing of your data infringes applicable legislation. You can either approach the supervisory authority responsible for your place of residence or employment or the place of the alleged infringement, or the supervisory authority responsible for us.

If you have any questions about the processing of your personal data, your rights as a data subject and any consent you have granted, we will be happy to answer them. We can be reached by the communications channels mentioned at the beginning of this document.

 

13. Changes

From time to time it may become necessary to amend this data protection policy. We therefore reserve the right to change it at any time. We will also publish the amended version of the data protection policy in the same place. If you return to our website, you should therefore read the data protection statement again.

 

Vom:                Mai 2018

 

***

Powered by Translations.com GlobalLink OneLink Software