Privacy & GDPR

"TRUST takes years to build, seconds to break and forever to repair."

With this in mind, as Make we have taken steps, and implemented additional, best-in-class safeguards, to ensure compliance with applicable data privacy and data protection regulations such as GDPR (EU General Data Protection Regulation).

1. Organization

Privacy Information Management System

Celonis has implemented a holistic management system to ensure that all personal data is processed in compliance with applicable regulatory requirements and internal policies.

Data Privacy Team

A dedicated team monitors, maintains and updates the Celonis privacy program in close coordination with the external data protection officer of Celonis SE.

Supplier Lifecycle Management

Extensive assessment of new suppliers prior to onboarding, along with regular audits thereafter, ensures that suppliers are retained only if they meet our high standards for processing personal data.

Employee Training & Awareness Measures

All employees are required to undergo mandatory annual training on data privacy. This training is supplemented by contractual obligations and individual awareness measures.

Continuous Improvement Process

Continuous self-assessments in the form of internal audits and process reviews ensure the sustainable implementation and continuous improvement of our privacy efforts.

Data transfers

Celonis Inc. is registered to the Data Privacy Framework (DPF). For data transfers to subprocessors located in countries not deemed adequate by the EU commission, appropriate transfer mechanisms are in place (e.g. SCCs).

2. Privacy by Design

Lawfulness, Fairness and Transparency

Make helps you to process personal data lawfully, fairly and in a transparent manner.

Purpose Limitation

Make supports the need to collect personal data only for a specific, explicit and legitimate purpose, and to retain such data only for as long as is necessary to fulfil such purpose.

Storage Limitation

Once personal data is no longer required (including in the event of termination of your subscription) you can request the deletion of all personal data.

Accuracy & Accountability

Through repeated synchronisation with your systems, we make it easy to keep all personal data accurate and up-to-date in your systems.

Integrity and Confidentiality

Industry best-practice security mechanisms ensure that all data processed is safeguarded. Please refer to our dedicated webpage on Information Security.