AXA Group Operations

Data Privacy Notice GIR (Group Identity Repository)

The protection of your personal data is of high importance to AXA, therefore AXA takes all reasonable care to ensure that your personal data is processed safely.

Group Identity Repository (GIR) is the AXA Group directory for all AXA employees and some related external resources and partners ("AXA collaborators"). The purposes of this tool are:

  1. to allow all AXA collaborators to find information on AXA collaborators, entities and communities of the AXA Group (White pages), and
  2. to manage (provide or deny) accesses to AXA applications by AXA collaborators.

AXA Group Operations SAS, a French company with its registered office at Building ENJOY, 81 rue Mstislav Rostropovitch, 75017 Paris, France, is committed as data controller for its own collaborator's personal data, and as data processor for the personal data it processes on behalf of other AXA entities, to protect your personal data when using the GIR.

Collecting your personal data (name, company name and place of work, work email address, professional family, title, department, manager's name, spoken language, employee n°, Windows ID (S n°), password in an encrypted format) is based on the legitimate interest of AXA Group and is mandatory (in particular for the management of access to applications) so you will not be able to refuse the processing or request deletion of your personal data before the end of your employment contract or mission. In order to enable you to access to certain applications from your mobile phone and to warrant an adequate level of security, you can provide your personal phone number and this data will be processed based on your consent.

You can edit or delete some personal data (gender, mobile phone, photography) by login into the tool. Regarding the processing of your personal phone number, you can withdraw your consent at any time but you will no more be able to access from this phone to applications using the double authentication process. Withdrawing your consent will in no case jeopardize the legitimacy of the processing performed before you decide to do so.

In any case, note that for the abovementioned purposes, with regard to AXA Group Operations SAS collaborators, your personal data will be kept for the duration of your employment contract or relationship with AXA. With regard to any other AXA entity, the retention period will be the one determined by such AXA entity in compliance with its own standards and applicable laws.

Your personal data will be accessible by all AXA collaborators for the sole purpose of finding contact information and will be limited to your name, gender, company name and place of work, work email address, professional family, title, department, manager's name, spoken language and mobile phone and photography if you accept to disclose them. Your employee n°, Windows ID (S n°) and your personal phone number if voluntarily given will only be accessible to the GIR global administrator within AXA Group Operations and selected subcontractors for technical support and management of access to applications. Your password is stored in an encrypted format and will never be accessible by anyone.

Please note that for administration and technical support purposes, your data may be transferred to selected subcontractors located in India and Poland, with whom AXA Group Operations has signed standard contractual clauses as published by the European Commission.

Your personal data will be hosted within AXA Group Operations datacenters.

You have the right to access and give advance directives regarding your personal data. For legitimate purposes, you can request the rectification, deletion and portability of your personal data, or object to or restrict the processing of your personal data.

In case of any such request or complaint, with regard to AXA Group Operations SAS collaborators, you can contact AXA Group Operations by sending an email to the following address: privacy.axaservices@axa.com. For collaborators of any other AXA entity, you can contact the Data Protection Officer of the corresponding AXA entity. Where AXA would not address properly your request, note that you have the right to lodge a complaint with the competent data protection authority.