Handling of Application Data
We offer you the opportunity to apply to us (e.g. by email, via postal mail or via an online application form). Below we inform you about the scope, purpose and use of your personal data collected in the context of the application process. We assure you that the collection, processing and use of your data will be carried out in accordance with applicable data protection law and all other statutory provisions and that your data will always be treated strictly confidentially.
Responsibility in the Application Process
The data controller within the meaning of the General Data Protection Regulation (GDPR) for the processing of your applicant data is exclusively the company to which you are specifically applying.
There is no uniform or group-wide responsibility. Each company processes applicant data independently and under its own data protection responsibility.
Applications can be directed in particular to one of the following companies:
-
Magicline
-
PerfectGym
-
Finion Capital
-
MySports
-
Finion FairPay
Which company is responsible in the specific case results from the respective job advertisement as well as from the communication context of the application (e.g. email address, application form, website).
The respective contact details of the data controller, including the information about the data protection officer (if appointed), can be found in the data protection notices on the website of the respective company.
Your applicant data is not passed on to other companies, unless this is expressly stated in the job advertisement or covered by separate consent.
Scope and Purpose of Data Collection
When you send us an application, we process your related personal data (e.g. contact and communication data, application documents, notes from interviews, etc.), insofar as this is necessary for the decision on establishing an employment relationship. The legal basis for this is Art. 6 para. 1 lit. b GDPR (general contract initiation) and - if you have given consent - Art. 6 para. 1 lit. a GDPR. Consent can be revoked at any time. Your personal data will only be passed on within our company to persons involved in processing your application.
If the application is successful, the data you submitted will be stored in our data processing systems on the basis of Art. 6 para. 1 lit. b GDPR for the purpose of carrying out the employment relationship.
Data Retention Duration
If we cannot make you a job offer, you reject a job offer or withdraw your application, we reserve the right to retain the data you have transmitted on the basis of our legitimate interests (Art. 6 para. 1 lit. f GDPR) for up to 6 months from the end of the application process (rejection or withdrawal of the application). The data will then be deleted and the physical application documents destroyed. The retention serves in particular as evidence in case of legal disputes. If it is apparent that the data will be required after the 6-month period expires (e.g. due to a threatened or pending legal dispute), deletion will only take place when the purpose for further retention ceases to apply.
Longer retention may also take place if you have given appropriate consent (Art. 6 para. 1 lit. a GDPR) or if legal retention obligations prevent deletion.
Inclusion in the Applicant Pool
If we cannot make you a job offer, there may be the possibility of including you in our applicant pool. In case of inclusion, all documents and information from the application will be transferred to the applicant pool to contact you in case of suitable vacancies.
Inclusion in the applicant pool is done exclusively on the basis of your explicit consent (Art. 6 para. 1 lit. a GDPR). Giving consent is voluntary and has no relation to the ongoing application process. The data subject can revoke their consent at any time. In this case, the data will be irrevocably deleted from the applicant pool, unless there are legal retention reasons.
The data from the applicant pool will be irrevocably deleted at the latest two years after consent is given.
Use of the Applicant Tool Lever
This website integrates the applicant management tool Lever. The provider is Lever, Inc., 1125 Mission Street, San Francisco, CA 94103, USA. When accessing a page with a Lever form, a connection is established to the provider's servers. Lever receives, among other things, your IP address and processes the data from your application documents as well as log data to provide the application process.
We have configured the tool so that applicant data is processed and stored exclusively in Lever's EU center (AWS region Frankfurt). Lever acts as a data processor within the framework of the GDPR and has no direct access to the applicants' data. Control remains with us. To secure data transmission, we have concluded a data processing contract with Lever according to Art. 28 GDPR as well as the standard contractual clauses approved by the EU Commission. In addition, Lever has joined the EU-US Data Privacy Framework.
The use of Lever is within the framework of our legitimate interest in efficient processing of applications (Art. 6 para. 1 lit. f GDPR). If you give us your consent for longer-term storage of your documents or for contacting you for future vacancies, the legal basis is Art. 6 para. 1 lit. a GDPR. You can revoke this consent at any time. Further information on data protection at Lever can be found at https://www.employinc.com/privacy/ and https://help.lever.co.
Our Social Media Presence
This Privacy Policy Applies to the Following Social Media Presence:
https://www.facebook.com/sportalliancecom
https://www.instagram.com/sportalliance_com/#
https://www.xing.com/pages/sportalliancegmbh
https://www.linkedin.com/company/sportalliance/
https://vimeo.com/user161717962
Data Processing by Social Networks
We maintain publicly accessible profiles on social networks. The social networks we use individually are listed below.
Social networks such as Facebook, X etc. can usually comprehensively analyze your user behavior when you visit their website or a website with integrated social media content (e.g. like buttons or advertising banners). Visiting our social media presence triggers numerous data protection-relevant processing operations. In detail:
If you are logged into your social media account and visit our social media presence, the operator of the social media portal can assign this visit to your user account. However, your personal data may also be collected if you are not logged in or do not have an account with the respective social media portal. This data collection takes place in this case, for example, via cookies that are stored on your device or by collecting your IP address.
With the help of the data collected in this way, the operators of the social media portals can create user profiles in which your preferences and interests are stored. In this way, interest-based advertising can be displayed to you within and outside the respective social media presence. If you have an account with the respective social network, interest-based advertising can be displayed on all devices on which you are or were logged in.
Please also note that we cannot track all processing processes on the social media portals. Depending on the provider, additional processing operations may therefore be carried out by the operators of the social media portals. Details can be found in the terms of use and data protection provisions of the respective social media portals.
Legal Basis
Our social media presence is intended to ensure the most comprehensive possible presence on the internet. This represents a legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR. The analysis processes initiated by the social networks may be based on different legal bases, which must be specified by the operators of the social networks (e.g. consent within the meaning of Art. 6 para. 1 lit. a GDPR).
Controller and Assertion of Rights
When you visit one of our social media presence (e.g. Facebook), we are jointly responsible with the operator of the social media platform for the data processing operations triggered by this visit. You can generally assert your rights (information, correction, deletion, restriction of processing, data portability and complaint) both vis-à-vis us and vis-à-vis the operator of the respective social media portal (e.g. vis-à-vis Facebook).
Please note that despite joint responsibility with the social media portal operators, we do not have complete influence on the data processing operations of the social media portals. Our possibilities are largely determined by the corporate policy of the respective provider.
Storage Duration
The data directly collected by us via the social media presence is deleted from our systems as soon as you request us to delete it, revoke your consent to storage or the purpose for data storage no longer applies. Stored cookies remain on your device until you delete them. Mandatory legal provisions - especially retention periods - remain unaffected.
We have no influence on the storage duration of your data that is stored by the operators of the social networks for their own purposes. For details on this, please inform yourself directly with the operators of the social networks (e.g. in their privacy policy, see below).
Your Rights
You have the right at any time to receive free information about the origin, recipients and purpose of your stored personal data. You also have the right to object, to data portability and the right to lodge a complaint with the competent supervisory authority. Furthermore, you can request the correction, blocking, deletion and, under certain circumstances, the restriction of the processing of your personal data.
Social Networks in Detail
Facebook
We have a profile on Facebook. The provider of this service is Meta Platforms Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland (hereinafter Meta). According to Meta, the collected data is also transferred to the USA and other third countries.
We have concluded an agreement on joint processing (Controller Addendum) with Meta. This agreement defines which data processing operations we or Meta is responsible for when you visit our Facebook page. You can view this agreement at the following link: https://www.facebook.com/legal/terms/page_controller_addendum.
You can independently adjust your advertising settings in your user account. To do this, click on the following link and log in: https://www.facebook.com/settings?tab=ads.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission. Details can be found here: https://www.facebook.com/legal/EU_data_transfer_addendum and https://de-de.facebook.com/help/566994660333381.
Details can be found in Facebook's privacy policy: https://www.facebook.com/about/privacy/.
The company has certification under the "EU-US Data Privacy Framework" (DPF). The DPF is an agreement between the European Union and the USA, which is intended to ensure compliance with European data protection standards when processing data in the USA. Each company certified under the DPF commits to complying with these data protection standards. You can obtain more information about this from the provider at the following link: https://www.dataprivacyframework.gov/participant/4452
Instagram
We have a profile on Instagram. The provider of this service is Meta Platforms Ireland Limited, Merrion Road, Dublin 4, D04 X2K5, Ireland.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission. Details can be found here: https://www.facebook.com/legal/EU_data_transfer_addendum and https://de-de.facebook.com/help/566994660333381.
Details on their handling of your personal data can be found in Instagram's privacy policy: https://privacycenter.instagram.com/policy/.
The company has certification under the "EU-US Data Privacy Framework" (DPF). The DPF is an agreement between the European Union and the USA, which is intended to ensure compliance with European data protection standards when processing data in the USA. Each company certified under the DPF commits to complying with these data protection standards. You can obtain more information about this from the provider at the following link: https://www.dataprivacyframework.gov/participant/4452
XING
We have a profile on XING. The provider is New Work SE, Am Strandkai 1, 20457 Hamburg, Germany. Details on their handling of your personal data can be found in XING's privacy policy: https://privacy.xing.com/de/datenschutzerklaerung.
LinkedIn
We have a profile on LinkedIn. The provider is LinkedIn Ireland Unlimited Company, Wilton Plaza, Wilton Place, Dublin 2, Ireland. LinkedIn uses advertising cookies.
If you want to deactivate LinkedIn advertising cookies, please use the following link: https://www.linkedin.com/psettings/guest-controls/retargeting-opt-out.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission. Details can be found here: https://www.linkedin.com/legal/l/dpa and https://www.linkedin.com/legal/l/eu-sccs.
Details on their handling of your personal data can be found in LinkedIn's privacy policy: https://www.linkedin.com/legal/privacy-policy.
The company has certification under the "EU-US Data Privacy Framework" (DPF). The DPF is an agreement between the European Union and the USA, which is intended to ensure compliance with European data protection standards when processing data in the USA. Each company certified under the DPF commits to complying with these data protection standards. You can obtain more information about this from the provider at the following link: https://www.dataprivacyframework.gov/participant/5448
Vimeo
We have a profile on Vimeo. The provider is Vimeo, Inc., 555 West 18th Street, New York 10011, USA.
Data transfer to the USA is based on the standard contractual clauses of the EU Commission and, according to Vimeo, on "legitimate business interests". Details can be found here: https://vimeo.com/privacy.
Details on their handling of your personal data can be found in Vimeo's privacy policy: https://vimeo.com/privacy.
The company has certification under the "EU-US Data Privacy Framework" (DPF). The DPF is an agreement between the European Union and the USA, which is intended to ensure compliance with European data protection standards when processing data in the USA. Each company certified under the DPF commits to complying with these data protection standards. You can obtain more information about this from the provider at the following link: https://www.dataprivacyframework.gov/participant/5711