Last updated: July 2026
This Privacy and Cookie Statement (“Statement”) describes the data protection practices carried out through the use of the Internet and any other electronic communication networks by BearingPoint Holding B.V. and its associated companies (together “BearingPoint”, “we”, “our”, “us”). It applies to bearingpoint.com, arcwide.com, bearingpoint.services, bearingpoint.ai as well as any other BearingPoint website, application, and digital service that references or links to this Statement (collectively “Site”).
Some of our websites and applications may provide a separate privacy statement. Where this is the case that specific privacy statement will govern the collection and use of personal data collected through the specific website or application. A list of our main offices can be found at https://www.bearingpoint.com/en-gb/locations/ and at https://www.arcwide.com/en/contact/.
We may amend this Statement from time to time to reflect developments in our business or evolving industry and legal trends. When we make changes we post the revised Statement on the Site and update the “Last updated” date above. Material changes may be communicated through additional notice where appropriate.
By continuing to use the Site following such changes, you will be deemed to have agreed to such changes.
If you do not wish your personal data to be processed as described in this Statement, in whole or part, do not access or use the Site.
We process personal data collected via our Site for the following purposes:
Detailed information on these processing activities is provided below.
If you contact us via our Site contact form, postal mail, e-mail, telephone, or fax, we process the personal data you provide to address your inquiry and store it to be able to follow up where needed.
If you register for a webinar, conference, or event, we process your personal data for administrative purposes to run the event and store your data for the purpose of maintaining our relationships with business contacts.
If you complete another form on our Site (e.g. to download a document, participate in a competition, complete a survey, provide client satisfaction feedback), we process the personal data you provide for the purpose stated in the form and store your data for the purpose of maintaining our relationships with business contacts.
The personal data collected is limited to what is necessary for the purposes. Generally, first and last name, business contact details (e-mail address and telephone number), job title, and company information are collected. We do not intentionally collect special categories of personal data through these channels.
Legal basis:
Without providing the required data, we may be unable to process your request or enter into a contractual relationship with you.
We use a customer relationship management system (the “BearingPoint CRM”) to store and manage contact details relating to existing and potential business contacts and clients. We process this data to maintain and develop our business relationships.
We use Microsoft Bookings, a Microsoft 365 service, to schedule and manage appointments via a web-based booking calendar. The legal basis is legitimate interest (Article 6(1)(f) GDPR) to provide an efficient appointment scheduling process.
The personal data necessary for booking an appointment via Microsoft Bookings (e.g. name and email address) as well as optional information (e.g. address, telephone number, added notes) is processed and stored only to the extent necessary for scheduling and managing the appointment and is retained for no longer than 120 days.
We use Microsoft Teams to conduct online meetings, video and telephone conferences, webinars, and to support collaboration with clients and business contacts. In this context, personal data such as participant names, contact details, meeting metadata (e.g. date and time), chat messages, and audio or video data may be processed. Where meetings are recorded or transcribed, audio and video recordings, transcripts, chat content, shared materials, and related metadata are processed. As a general rule, recording and transcription features are activated with the prior consent of the participants.
If we offer a recurring newsletter, you can subscribe by providing your e-mail address and name. Newsletters are sent based on your consent, which you can withdraw with no retroactive effect via the unsubscribe link available at the bottom of each newsletter or by contacting us directly. We use third-party marketing automation tools for newsletter dispatch.
We obtain business contacts through information in the public domain, licensed B2B data providers, interactions at industry events, or through our Site. This information typically includes business card-type data (full name, company, office address, business phone number, business e-mail address, job title, social media profile URL). The business contact data is stored in our BearingPoint CRM and processed to contact you via phone or e-mail to establish a business relationship or to inform you about our events, products, or services. We process your data in accordance with applicable regulations on data protection and electronic communications based on our legitimate interest. BearingPoint is a B2B (Business-to-Business) commercial enterprise and we direct communications about our products and services with the intention to reach representatives of commercial enterprises only.
Licensed data is processed in accordance with the relevant license agreement with the vendor. The vendors typically act as independent data controllers and are subject to the data protection regulations when they collect your data. We primarily license data from the Cognism Platform (https://www.cognism.com/en/privacy-policy), LinkedIn Sales Navigator (https://www.linkedin.com/legal/privacy-policy), and in some countries also from Lusha (https://www.lusha.com/legal/privacy-notice/) and from ZoomInfo (https://www.zoominfo.com/legal/privacy-policy).
You have the right to object to direct marketing at any time by contacting us.
We conduct online surveys to improve our services. Participation in surveys is voluntary and anonymous unless otherwise stated in a particular survey. Mandatory fields are marked with an asterisk (*). If you wish to participate anonymously, please do not enter personal data (e.g. name, e-mail address) in free text fields. Some surveys allow you to voluntarily provide personal data (e.g. name/pseudonym, business e-mail address, business phone number) so that we can contact you or obtain more detailed survey input, such data is only processed for survey‑related purposes. By submitting a survey response, you provide your consent to the processing of the data provided (Article 6(1)(a) GDPR). To ensure secure participation in the survey, data transmission is exclusively encrypted. In the process log data is collected (e.g. to prevent misuse of the survey forms), which is not analysed or merged with other survey data. Survey data is deleted after the survey closure date and internal evaluation of the results.
To prepare, conduct, and evaluate surveys we use Microsoft Forms. For data storage we opted for the Microsoft data centers in Europe. As Microsoft Bookings and Microsoft Forms are Microsoft 365 services, Microsoft (One Microsoft Way, Redmond, WA 98052-6399, USA) may have access to the data you provide. A Data Processing Agreement including Standard Contractual Clauses is in place. Further information on the management and use of data by Microsoft can be found in Microsoft’s privacy policy: https://www.microsoft.com/en-us/privacy/privacystatement.
We use AI-enabled technologies and services to support the operation, security, analysis, and continuous improvement of our Site and digital services. These AI-based functionalities may be provided directly by us or by trusted service providers, including Microsoft, as part of the platforms, infrastructure, and tools we use.
AI technologies may be used, for example, to:
Where personal data is processed in connection with the use of AI-enabled services, such processing is carried out in accordance with applicable data protection laws and this Statement. AI systems are not used for automated decision-making that produces legal effects or similarly significant impacts on individuals.
Microsoft Copilot integrated in Microsoft Teams may be used to support meeting productivity, for example by generating AI assisted summaries or transcripts based on meeting content. Such AI generated outputs are subject to human review and are not used for automated decision making. The processing is carried out within our Microsoft 365 environment and is based on our legitimate interest in enabling efficient collaboration.
In addition, service providers whose technologies we use may process non-personal or aggregated data, generated in connection with the use of our Site and services, for their own legitimate purposes operating, maintaining, developing, and improving products and services, as well as using artificial intelligence and machine learning technologies, for example to train, fine-tune, test, and improve models; enhance system performance; develop new features and capabilities; or promote the reliable, secure, and responsible use of AI-enabled technologies.
Unless a more specific storage period is specified in this Statement, we store your personal data until it is necessary to fulfil the purpose for which it was collected or for as long as we are legally required to retain it (e.g. due to tax or commercial law obligations). If you exercise your right to erasure or withdraw your consent to data processing, we will delete your personal data unless we are required or otherwise legally permitted to retain it (e.g. statutory retention periods). In such cases, the data will be deleted once those obligations or retention grounds no longer apply.
We only disclose personal data to other BearingPoint group companies, business partners, government bodies, law enforcement agencies, successors in title to our business, and suppliers we engage to process data on our behalf. We share personal data for our legitimate business purposes and to comply with legal obligations. The applicable legal basis depends on the context of processing and may be contractual performance, legitimate interest, or consent.
Our Site uses third-party services as described in this Statement. Additionally, we engage a limited number of trusted external service providers for technical data processing and service offerings. These service providers are carefully selected, meet high data protection and security standards, and act solely in accordance with our instructions. We only share the information necessary for them to perform their services and we contractually require them to treat any information we share with them as confidential. Data Processing Agreements in line with Article 28 GDPR are in place.
We make efforts to ensure that personal data is processed within the EU/EEA whenever possible. Where we engage service providers located in non-EU countries without an adequacy decision, we ensure that where required by law appropriate safeguards (e.g. certification, EU Standard Contractual Clauses) are put in place before transferring personal data.
We maintain an active presence on various social media platforms in order to communicate with members and interested parties, to promote our services, to collect leads and to run advertising campaigns. Partially, we are using the marketing and advertising tools provided by the respective platform operators (e.g. LinkedIn Lead Gen Forms). The processing of personal data may occur when you visit, interact with, or send us messages via these channels.
We use cookies, pixels, and similar tracking technologies provided by social media platform operators on our Site to measure the effectiveness of our social media advertising campaigns and to retarget users who have previously visited our Site. These technologies may collect data such as IP address, device information, browser type, and platform-specific user identifiers (for logged in users). Where required by applicable law, the use of these technologies and the related processing is based on user consent.
Social media platform operators use tracking and analytics technologies to understand user behaviour, measure engagement, and evaluate the performance of advertising content. They process this data for their own purposes, such as analytics, marketing, advertising, service improvement and security, in accordance with their respective privacy policies.
We do not have access to individual-level personal data collected by the social media platform operators through these tracking technologies. We only receive aggregated and anonymized reports or statistics that do not allow us to identify individual users.
In certain instances, we and the platform operator share responsibility for processing activities (e.g. page analytics or insights). In these cases, we have a joint controllership agreement or other data processing addendum in place which outlines the allocation of responsibilities. The platform operators’ privacy policies and related agreements provide further information about how joint responsibility is managed.
Below you will find an overview of each social media platform we currently use.
Operator: LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland
Privacy Policy: https://www.linkedin.com/legal/privacy-policy
Purpose: Professional networking, communication with members, promotion, lead generation and use of LinkedIn advertising tools (LinkedIn Lead Gen Forms for BearingPoint sponsored content, and sponsored LinkedIn InMails for recruitment and marketing campaigns).
Operator: Meta Platforms Ireland Ltd., Merrion Road, Dublin 4, D04 X2K5, Ireland
Privacy Policy: https://privacycenter.instagram.com/policy/
Purpose: Communication with users, promotion of services, lead generation, advertising campaigns.
Operator: Meta Platforms Ireland Ltd., Merrion Road, Dublin 4, D04 X2K5, Ireland
Privacy Policy: https://www.facebook.com/privacy/policy/
Purpose: Communication, service promotion, lead collection, and advertising via Facebook Lead Ads.
Operator: Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, D04 E5W5, Ireland
Privacy Policy: https://policies.google.com/privacy
Purpose: Sharing video content, communication with users, service promotion.
Operator: X Internet Unlimited Company, One Cumberland Place, Fenian Street, Dublin 2, D02 AX07, Ireland
Privacy Policy: https://x.com/privacy
Purpose: Communication, service promotion, lead collection, and use of Twitter/X advertising tools.
Operator: TikTok Technology Limited, 10 Earlsfort Terrace, Dublin, D02 T380, Ireland
Privacy Policy: https://www.tiktok.com/legal/page/eea/privacy-policy/en
Purpose: Sharing and promoting video content, communication with users, lead collection, and advertising via TikTok Ads.
This Site is hosted by an external service provider (“host”). Personal data collected when you use the Site is stored on the servers of the host. These may include, but are not limited to, IP addresses, contact requests, metadata and communications, contact and contract information, names, web page access, and other data generated when using the Site.
The host is used for the purpose of fulfilling the contract with our potential and existing customers (Art. 6(1)(b) GDPR) and in the interest of secure, fast, and efficient provision of our online services by a professional provider (Art. 6(1)(f) GDPR).
Our host will only process your data to the extent necessary to fulfil its performance obligations and to follow our instructions with respect to such data.
Host:
The host is using the following subprocessors, mainly to support AI enabled features:
The provider of this Site automatically collects and stores information in so-called server log files, which your browser communicates to us automatically. These may include:
This data is not merged with other data sources.
This data is processed based on Article 6(1)(f) GDPR. The operator of the Site has a legitimate interest in the technically error-free depiction and the optimization of the Site. In order to achieve this, server log files must be recorded.
For security reasons and to protect the transmission of confidential content, such as inquiries you submit to us as the Site operator, this Site uses either an SSL or a TLS encryption program. You can recognize an encrypted connection by checking whether the address line of the browser switches from “http://” to “https://” and also by the appearance of the lock icon in the browser line.
When SSL or TLS encryption is active, data you transmit to us cannot be read by third parties.
Our Site uses “cookies”, small text files that are stored on or read from your device. Cookies may be stored only for the duration of your Site session (“session cookies”), or remain on your device after you visit a Site (“persistent cookies”). Session cookies are automatically deleted once you close your web browser. Persistent cookies remain on your device until they expire, you delete them manually or your web browser deletes them automatically.
In some cases, it is possible that third-party cookies are stored on your device once you enter our Site (“third-party cookies”). These cookies enable you or us to take advantage of certain services offered by the third party.
Cookies serve various functions. Many are technically essential for Site functioning (e.g. for security, load balancing, navigation, abuse protection). Others support user pattern analytics or promotional message display.
Cookies which are technically necessary (“system cookies”) are stored based on the legitimate interest (Article 6(1)(f) GDPR). Cookies which are technically not necessary are only placed if you give your consent. You can adjust your consent preferences via our Consent Manager.
You have the option to set up your browser in such a manner that you will be notified any time cookies are placed and to permit the acceptance of cookies only in specific cases. You may also exclude the acceptance of cookies in certain cases or in general or activate the delete function for the automatic eradication of cookies when the browser closes. If cookies are deactivated, the functions of this Site may be limited.
We use the following cookie categories:
Targeting cookies
These cookies may be set on our Site by third-party service providers. They may be used by those companies to build a profile of your interests and show you relevant advertisements on other websites you visit. They do not directly store personal data, but uniquely identify your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.
We use Google Analytics, a web analytics service provided by Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, D04 E5W5, Ireland.
In order to protect your data as best as possible, the version “Google Analytics 4” (GA4, anonymized tracking, cookieless tracking) and GA4 integrations are used. Thus, only anonymized aggregated data (IP address anonymization) is transmitted to us, which we evaluate for web statistics and therefore want to improve our offer. No individual profiles are created, but rather user groups. A personal reference can no longer be established. The GA4 integration Google Signals collects session data from websites and apps that Google associates with users who have signed in to their Google accounts, and who have turned on Ads Personalization. This data is used to enable cross-device reporting, cross-device remarketing, and cross-device conversion export to Ads. The legal basis for the use of GA4 is consent. The collected data may be transmitted to Google in Europe, or also to Google servers in the USA. We have no influence on the data transfer to Google.
Further information on the handling of user data can be found in Google's privacy policy: https://policies.google.com/privacy.
We use Lead Forensics, a B2B sales and marketing enablement tool. It is operated by Lead Forensics, UK Headquarters, Communication House, 26 York Street, London, W1U 6PZ, UK.
The Lead Forensics tool uses a tracking code for identifying businesses visiting our Site based on their business IP addresses. This is different from cookies. The Lead Forensics tracking code only provides information that is readily available in the public domain. It does not, and cannot, provide personal or sensitive data regarding who has visited our Site. Under no circumstances will the data be used for the personal identification of an individual visitor. If IP addresses are collected, they will be anonymized immediately after collection. The information generated by the Lead Forensics tracking code is transmitted to the Lead Forensics tool and processed and stored in the UK within a secure environment. The Lead Forensics tool does not provide us with the IP addresses. It provides us information on what companies have visited our Site, the date and duration of their visit, and the web pages that they visit. This information allows us to analyse the use of our Site and eventually contact those companies about their experience or for sales purposes.
More information can be found at https://www.leadforensics.com/privacy-policy/.
We use “Google reCAPTCHA” (hereafter “reCAPTCHA”) on our Site. Provider is Google LLC 1600 Amphitheater Parkway, Mountain View, CA 94043, USA (“Google”).
With reCAPTCHA we want to check if the data entry on our Site (for example in a contact form) is done by a human or by an automated program. For this, reCAPTCHA analyses the behaviour of the site visitor based on various characteristics. This analysis begins automatically as soon as the Site visitor enters the Site. For analysis, reCAPTCHA evaluates various information (for example, the IP address, the time a site visitor spends on the Site or mouse movements made by the user). The data collected during the analysis will be forwarded to Google. The reCAPTCHA analysis is completely in the background. Site visitors are not advised that an analysis is taking place. Data processing takes place on the basis of Art. 6 para. 1 lit. f GDPR. We have a legitimate interest in protecting our Site from abusive automated spying and SPAM.
For more information about Google reCAPTCHA and Google’s privacy policy, please visit the following links: https://policies.google.com/privacy and https://www.google.com/recaptcha/about/.
We use the "CleanTalk" service, which protects the Site from spam when a data entry on a Site is done (for example in a contact form). The legal basis is the legitimate interest.
For security reasons and as protection against spam, your data is processed in the CleanTalk Cloud Service and stored in log files for a maximum of 45 days. After expiry of the aforementioned period, this data will be completely deleted. CleanTalk may use information about spam activity from IP or email addresses to provide appropriate anti-spam protection to all websites connected to its service.
Further information on the handling and use of data by CleanTalk can be found in CleanTalk Inc’s privacy policy: https://cleantalk.org/publicoffer#privacy.
We use the “Akismet” service which protects the Site from spam when you do a data entry in a contact form. Provider of the Akismet service is Automattic Inc, 60 29th St, #343 San Francisco, CA 94110, United States. The legal basis is the legitimate interest.
Automattic is processing your data in the USA; it is an active participant of the EU-US Data Privacy Framework, the Swiss-US Data Privacy Framework, and the UK Extension to the EU-US Data Privacy Framework. Automattic may use your user IP, user agent, referrer, Site URL (along with other information directly provided by you in the contact forms such as your name, company address, job title, function, and the comment itself). Automattic has retention periods between two weeks and ninety days for the vast majority of spam related data, at which point it is automatically deleted from Akismet’s databases. A Data Processing Agreement including the Standard Contractual Clauses is in place.
Further information on the handling and use of data by Akismet can be found in the Automattic privacy policy: https://automattic.com/privacy/.
We use cookies or tracking pixels from Microsoft Dynamics 365, which is provided by Microsoft Ireland Operations Limited, One Microsoft Place, South County Business Park, Leopardstown, Dublin 18, Ireland. Microsoft Dynamics uses the following cookies:
We use Microsoft Clarity and Microsoft Advertising services provided by Microsoft Ireland Operations Ltd, One Microsoft Place, South County Business Park, Leopardstown, Dublin 18, Ireland to better understand the needs of our users and to optimise the offer on this Site.
The Clarity technology gives us a better understanding of our users' experiences (e.g. how much time users spend on which pages, which links they click on, what they like and dislike, etc.). This helps us to tailor our offering to our users' feedback. Clarity works with cookies and other technologies to collect information about the behaviour of our users and their devices (in particular IP address of the device (only stored in anonymised form), screen size, device type (unique device identifiers), information about the browser used, location (country only), preferred language for displaying our Site).
Microsoft Advertising is used to measure the effectiveness of our advertisements and to display relevant ads to users. For this purpose, the Microsoft Advertising Universal Event Tracking (UET) tag may be used on our Site. This technology allows Microsoft to collect and process information about how users interact with our Site after clicking on an advertisement, including visited pages, conversion actions, and interaction data. This information may be used for remarketing purposes.
The information collected through these services may be stored in pseudonymised user profiles. Neither we nor Microsoft use this information to directly identify individual users. The legal basis for data processing is your consent in accordance with Art. 6 (1) lit. a GDPR. Microsoft Corporation is committed to complying with the data processing principles of the Data Privacy Framework (DPF). On this basis, data transfer to the USA, which cannot be excluded, is possible. If you have any questions about data protection at Microsoft, you can contact them at https://www.microsoft.com/en-us/concern/privacy. You can find the Microsoft privacy policy at https://www.microsoft.com/en-us/privacy/privacystatement.
Furthermore, when browsing our Site you may get access to embedded media and other external sources which may store cookies. As cookies from externally embedded media may be used or modified without our knowledge or consent, you are invited to consult the following links for further information.
| Medien | Link zu deren Datenschutzerklärung |
| Twitter / X | https://x.com/privacy |
| YouTube | https://policies.google.com/privacy |
| https://www.linkedin.com/legal/privacy-policy | |
| https://www.facebook.com/privacy/policy/ | |
| https://privacy.xing.com/en/privacy-policy | |
| https://privacycenter.instagram.com/policy | |
| TikTok | https://www.tiktok.com/legal/page/eea/privacy-policy/en |
This Statement applies only to information collected through our Site. Our Site may contain links to other websites that are not owned or operated by BearingPoint. We are not responsible for the privacy practices or the content of such third-party websites. We encourage you to review the privacy statements of every website you visit.
We implement appropriate technical and organizational measures to protect the personal data you provide through our Site against unauthorized access, disclosure, use, alteration, or destruction. Please note, however, that no method of transmission over the Internet or method of electronic storage is completely secure. While we make every effort to protect your personal data, when data is transferred over the Internet it may potentially be accessed and used by unauthorized parties.
All personal data that BearingPoint as a controller stores or processes should be accurate and kept up to date. You may have certain rights related to your personal data, depending on your location and the applicable data protection laws. Subject to any applicable exceptions or limitations, these rights may include:
You can submit a Data Subject Rights Request to BearingPoint by completing our short Microsoft Forms questionnaire (a service provided by our data processor Microsoft Ireland Operations Ltd.) using the following link: https://forms.cloud.microsoft/e/9JggvbkEfX
If you prefer not to use the online form, you may also submit a written request by mail to:
BearingPoint Data Protection Department
Group Compliance Officer
BearingPoint Berlin
Invalidenstraße 73
10557 Berlin
Germany
Fax: +49 30 880041040
To ensure the security and confidentiality of personal data, we may require you to provide identity verification information before processing your data subject request.
Personal data provided when completing the Data Subject Request Form is retained in accordance with applicable statutory retention periods and as long as it is necessary to fulfil the purpose for which it was provided.
This California Consumer Privacy Act Notice is addressed to California residents only, and is provided by BearingPoint Holding B.V. and its associated companies (together “BearingPoint”; “we”, “our”, “us”).
This Notice explains what personal information we collect, how we use, share, disclose, and retain it, as well as the rights of California residents and how they can exercise those rights.
We collect personal information as defined under the CCPA, Cal. Civ. Code § 1798.140(v), which includes information that identifies, relates to, describes, or could reasonably be linked with a particular consumer or household.
In the past 12 months, we may have collected the following categories:
| Category | Examples |
| Identifiers | Full Name, Social Media URL, Address, Email Address, Business Phone Number and IP Address |
| Personal Information | Address, Telephone Number and Notes |
| Internet or Network Activity |
IP Address, Interactions with Our Site, Advertisements and Applications |
| Professional or Employment-Related Information | Job Title, Job Function, Company Name, Business Contact Details, Office Address, Business Phone Number, Employment Application and Business Email Address |
We use personal information for business or commercial purposes such as:
We collect personal information from the following sources:
We will only disclose personal information to:
We do not sell personal information as defined under Cal. Civ. Code §§ 1798,140(ad) and (ah).
Under the California Consumer Privacy Act, California residents have the following rights:
| Your Right | What You Can Request From Us |
| Right To Know |
|
| Right To Delete |
|
| Right To Correct |
|
| Right To Opt Out |
|
| Right To Limit |
|
We will not discriminate against you for exercising your rights. You or your authorized agent may submit a verifiable request to privacy@bearingpoint.com
We retain information only as long as reasonably necessary for business/legal purposes, and we implement reasonable administrative, technical, and physical safeguards to protect consumer data.
Some browsers offer the option of sending a "Do Not Track" signal, which indicates that you do not wish to be tracked across different websites. Our Site does not currently respond to such signals as there is no uniform standard for implementation.
These terms are additional to the present privacy notice, as required by the China Personal Information Protection Law.
These terms should apply to the processing of the personal information of natural persons within the territory of the People’s Republic of China.
These terms shall also apply to the activities carried out outside the territory of the People’s Republic of China to process the personal information of natural persons within the territory of the People’s Republic of China under any of the following circumstances:
Personal information refers to various kinds of information related to identified or identifiable natural persons recorded by electronic or other means, excluding the information processed anonymously.
Processing of personal information includes the collection, storage, use, processing, transmission, provision, publication, and erasure of personal information.
Processing personal information shall be for a definite and reasonable purpose, shall be directly related to the purpose of processing, and shall be processed in a manner that has the least impact on individual rights and interests.
Collection of personal information shall be limited to the minimum scope for the purpose of processing and excessive collection of personal information shall not be allowed.
Sensitive personal information refers to the personal information that can easily lead to the infringement of the personal dignity or natural persons or the harm of personal or property safety once leaked or illegally used, including such information as biometrics, religious belief, specific identities, medical health, financial accounts, and whereabouts, and the personal information of minors under the age of 14.
Personal information processors can process sensitive personal information only when they have a specific purpose and sufficient necessity and take strict protective measures.
Where a personal information processor needs to provide personal information outside the territory of the People’s Republic of China due to business or other needs, it shall meet any of the following conditions:
Where the storage period as prescribed by laws and administrative regulations does not expire, or the deletion of personal information is difficult to be realized technically, the personal information processor shall stop processing personal information other than storage and taking necessary security measures.
In addition to the data sharing activities as described in the main notice, we may also share your personal information with other independent personal information handlers. We will notify you of the data to be shared, its processing purpose and means as well as other items as required by applicable data protection laws and will obtain your separate consent where this is required.
Personal Information Handler: the company (or companies) of the BearingPoint Group (including BearingPoint (Shanghai) Enterprise Management Consulting Co. Ltd.) is responsible for the processing of your personal information as described here and in the main notice.
China Contact Details:
BearingPoint (Shanghai) Enterprise Management Consulting Co. Ltd.
55/F, Wheelock Square
1717 Nanjing West Road
CN-200000 Jing'an District, Shanghai, China
Phone: +86 21 6288 7866
marketing.cn@bearingpoint.com
BearingPoint Hong Kong Limited
Office 4 10/F, Kwan Chart Tower, No.6 Tonnochy Road
HKG Wanchai, Hong Kong, China
Phone: +852 5621 4776
Fax: +852 3753 0021
marketing.cn@bearingpoint.com
Foreign Data Recipient Contact Details:
BearingPoint Holding B.V.
De Entree 89 NL-1101 BH Amsterdam, The Netherlands
Phone: +31 20 504 90 00
compliance@bearingpoint.com
If you have any general questions or concerns about how we process personal information, please contact us at privacy@bearingpoint.com.