Other Covered Entities

Cardinia Real Estate LLC
Crystal Vision LLC
Omnicom Capital Inc.
Omnicom Management Inc.

Industries

  • Media and Entertainment
  • Advertising Services

Participation

UK Extension to the EU-U.S. Data Privacy Framework Framework: Active

Original Certification Date: 10/6/2023
Next Certification Due Date: 4/23/2024
Data Collected: HR, NON-HR

EU-U.S. Data Privacy Framework Framework: Active

Original Certification Date: 10/24/2016
Next Certification Due Date: 4/23/2024
Data Collected: HR, NON-HR

Swiss-U.S. Data Privacy Framework Framework: Active

Original Certification Date: 5/7/2019
Next Certification Due Date: 4/23/2024
Data Collected: HR, NON-HR

Purpose of Data Collection

Omnicom Group Inc. and its subsidiaries Omnicom Management Inc., Omnicom Capital Inc., Cardinia Real Estate LLC and Crystal Vision LLC (collectively, “Omnicom”) collect personal data directly from consumers located in the EU, UK and Switzerland. This collection occurs, for example when a consumer visits Omnicom’s website. Omnicom may use the relevant personal data to (1) respond to and communicate with consumers about their requests, questions and comments (2) operate, evaluate and improve the company’s business (including developing new products and services; managing communications; determining the effectiveness of the company’s sales, marketing and advertising; analyzing and enhancing the company’s products, services and website; and performing accounting, auditing, billing, reconciliation and collection activities); (3) perform data analyses and other processing (including market and consumer research, trend analysis, financial analysis, anonymization, encryption and tokenization of personal data); (4) protect against, identify and prevent fraud and other criminal activity, claims and other liabilities; and (5) comply with and enforce applicable legal requirements, relevant industry standards and the company’s policies. The types of relevant consumer personal data Omnicom collects include (1) contact information, such as name, postal address, email address and telephone number; and (2) relevant personal data in content consumers provide on Omnicom’s website and other data collected automatically through the company’s website (such as IP addresses, browser characteristics, device characteristics, operating system, language preferences, referring URLs, information on actions taken on the company’s website, and dates and times of website visits). In addition, Omnicom obtains relevant personal data, such as contact information and financial account information, of the representatives of its suppliers, vendors and other third parties located in the EU, UK and Switzerland that provide services or products to Omnicom. The company uses this information to manage its relationships with these parties, process payments, expenses and reimbursements, and carry out Omnicom’s obligations under its contracts with these parties. Omnicom also collects personal data about employees and the employees of its subsidiaries and affiliates, located in the EU, UK and Switzerland, to carry out and support human resources functions and activities. In addition, Omnicom obtains relevant personal data about employees’ emergency contacts and other individuals (such as spouse, family members, dependents and beneficiaries) to the extent employees provide such information to the company. Omnicom processes this information to comply with its legal obligations and for benefits administration and other internal administrative purposes. Omnicom may disclose the relevant personal data to recipients such as (1) the company’s affiliates and subsidiaries, (2) third-party controllers and (3) third-party processors the company has retained to perform services on its behalf and pursuant to its instructions. Omnicom also may disclose the relevant personal data if it is required to do so by law or legal process or in response to lawful requests from public authorities, including to meet national security, public interest or law enforcement requirements.

Privacy Policy

HR Data

Omnicom Data Privacy Framework Employee Privacy Policy
Description:

The Omnicom Data Privacy Framework Employee Privacy Policy describes how the company implements the DPF Principles for relevant employee personal data. The Policy is available to employees on the company’s Intranet.

Effective Date: 4/27/2021

Non-HR Data

Description:

The Omnicom Data Privacy Framework Consumer Privacy Policy describes how the company implements the DPF Principles with respect to the personal data of certain individuals who are covered by the company’s DPF certification.

Effective Date: 4/27/2021

Verification Method

Self-Assessment

Dispute Resolution

Questions or Complaints?

If you have a question or complaint regarding the covered data, please contact Omnicom Group Inc. at:

Brian Clayton
Chief Data Privacy Officer
Omnicom Group Inc.
280 Park Ave FL 31W
New York, New York 10017
Fax: (212) 415-3574

Privacy Shield organizations must respond within 45 days of receiving a complaint.

If you have not received a timely or satisfactory response from Omnicom Group Inc. to your question or complaint, please contact the independent recourse mechanism listed below


NON-HR RECOURSE MECHANISM



Appropriate statutory body with jurisdiction to investigate any claims against Omnicom Group Inc. regarding possible unfair or deceptive practices and violations of laws or regulations covering privacy Federal Trade Commission