Data Protection Statement for Business Banking

The credit institution takes the requirements of data protection law very seriously. Accordingly, customer data will be thoroughly protected during collection and processing, and while using our service. Such data protection is based in particular on the General Data Protection Regulation (GDPR) and the Austrian Data Protection Act of 2018 [Datenschutzgesetz/DSG 2018].

Business Banking: the internet banking applications George Business and Telebanking Pro of Erste Bank and Sparkassen [savings banks]

 

Please also refer to the general data protection statement.

The provisions of the statement also apply to "Business Banking".

In addition, the following has to be observed with respect to "Business Banking":

Authentication and all other data transfers will be carried out via an encrypted HTTPS connection.

This connection is secured by an extended validation certificate of Messrs. Verisign (shown in the green bar in the URL line). The certificate has been issued for "sparkasse.at" in the name of our IT service provider sIT-Solutions AT Spardat GmbH. The fingerprint may be verified at www.sparkasse.at/ssl-sicherheitszertifikat or verbally via our call centre (+43 5 0100 + sort code of your Erste Bank or Sparkasse as extension).

Log information collected within the Erste Bank and Sparkassen infrastructure will exclusively be processed within the designated internal infrastructure.

Data stored with Erste Bank and Sparkassen (customer information, account balances, entries, transaction data, ...) will be analysed and prepared technically by "Business Banking" for the purpose of a better display in "Business Banking". This includes a full indexation of such data and a categorisation of transactions. This also concerns data uploaded by the customer onto the system. This also concerns data uploaded onto the system via an MBS communication with the access data entered by the customer.

Sensitive messages and orders will exclusively be served securely via the service mailbox. Orders placed via different channels (e.g. by email or text message) will not be accepted.

Usersnap is a browser-based screenshot tool for easy transmission of feedback to us. It serves the purpose of taking and sending screenshots and offers different features for making comments and highlighting. The customer sends the desired screenshot together with text information to an internal troubleshooting system of "Business Banking". The transfer will be made via Usersnap GmbH (server located in Austria) to us, i.e. not directly.

All data and banking details relating to customers (balances, IBANs, transaction data, etc.) will be fully anonymised before the screenshot is made.