|
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| For the handling of the personal information of customers, clients and business connections, used by Pfizer Japan Inc. (hereinafter referred to as "Pfizer") on business, Pfizer hereby declares that Pfizer will establish the company's own rules and management system for personal information protection, following the Japanese laws and norms applicable to the protection of relevant personal information and considering the international movement concerning such protection, and will fix, perform and follow the Personal Information Protection Policy as follows: |
||
| 1.1 | Pfizer will create the "Pfizer Japan Inc. Personal Information Protection Rules" in order to implement the statement above, inform the employees (including general executive staff, part-timers and temporary employees) and other persons involved in the handling of personal information, and will perform, improve and maintain such Rules. |
|
| 1.2 | To prevent the loss, destruction, falsification and leakage of personal information, Pfizer will prepare an "Information Security Management Program (Security Policy)", and will take appropriate measures for information security to prevent unauthorized access to personal information and the breaking-into Pfizer's computer system of computer viruses, as well. |
|
| 1.3 | Pfizer will collect personal information through legally appropriate and fair means, and shall not collect it in a dishonest manner. Pfizer will also obtain consent from the principal who is the subject individual of relevant personal information to the purposes for which such personal information will be used or notify matters necessary to be informed on Pfizer websites. |
|
| 1.4 | When collecting personal information indirectly, Pfizer will confirm that the personal information to be collected has been collected from the principal in such information lawfully and properly, make a necessary contractual arrangement, and notify matters necessary to be informed, including the purposes for which such personal information will be used, on Pfizer websites. |
|
| 1.5 | Pfizer acknowledges that the data subject (i.e. the specific individual identified by particular personal information) has the right to make request for disclosure, correction, cease of use, and deletion of his or her personal information and will respond to such request in an appropriate manner. |
|
| 1.6 | When using personal information jointly with a third party or entrusting to a third party with the handling of any personal information in connection with contracting out of our business, Pfizer will pay strict attention to the eligibility of and review the qualifications of the third party, enter into a necessary agreement with such party and take every measure required by the applicable laws. |
|
| 1.7 | Pfizer will establish the following rules applicable to specific cases of the handling and collection of personal information: |
|
| 1.7.1 | Rules of using personal information: Personal information shall be utilized by only authorized persons for specific business operations, as far as such operations require, within the scope of the intended purposes for which such personal information will be used. |
||
| 1.7.2 | Prohibited items: |
||
| 1. | As a rule, personal information shall not be provided to third parties; | ||
| 2. | Pfizer will ensure that no personal information will be utilized for any purposes other than the intended usage purposes clearly informed to the principal, transported outside the place where it is usually used, or leaked out through transmitting it to any places outside the company or by any other means; | ||
| 3. | Pfizer's employees shall not inform any third party of any details of personal information acquired in the course of performing their duties without permission, nor use it for any unjustified purposes. After an employee who has handled personal information on his or her duty is relieved of such duty, he or she shall not do the deeds prohibited above; and | ||
| 4. | Pfizer shall not, without a justifiable reason, collect, use or provide personal information containing any of the following:
|
||
| In relation to Pfizer's business activities, Pfizer will obtain or collect personal information necessary for carrying out its business, and use it for the purposes listed below. When entrusting the handling of such personal information, in whole or in part, to a certain subcontractor in order to facilitate the business operations, Pfizer may provide such subcontractor with such information to such an extent as is reasonably necessary. In such case, Pfizer not only will enter into an agreement on the handling of personal information with the subcontractor but also will direct such subcontractor in an appropriate manner as necessary. |
| 2.1 |
Purposes of using personal information:
|
| 2.1.1 | For the personal information of customers, clients, business connections and any other persons other than those set forth in subsection 2.1.2 below (hereinafter referred to as "Customer Information"): |
||
| 1. | To collect, provide and review the usage, quality, efficacy or safety of, or any other information concerning to ensure the appropriate use of pharmaceutical products, quasi-drugs, medical devices, drugs for animals, agricultural chemicals, and any other products and services which Pfizer imports, manufactures, sells, promotes or otherwise deals with (hereinafter collectively referred to as the "Company's Products") (including any emergency information on safety or information contained in patient | ||
| 2. | To provide the Company's Products and any printed materials, specialist magazines (news papers), advertisements or any other advertising or promotional materials for the Company's Products; | ||
| 3. | To grasp who are the users of the Company's Products and to arrange a contact network; | ||
| 4. | To manage the sales of the Company's Products; | ||
| 5. | To investigate and research medical and pharmaceutical subjects; | ||
| 6. | To collect, provide and review information concerning medicine, pharmacy and other sciences; | ||
| 7. | To confirm memberships for the websites run by Pfizer and communicate the members; | ||
| 8. | To notify or inform specific services for the Company's Products, confirm applications or registration for such services, and provide them; | ||
| 9. | To exercise the legal rights that Pfizer possesses and to fulfill the obligations that Pfizer assumes; | ||
| 10. | To investigate the actual state of the applications of, customer needs for, marketability and customer satisfaction of the Company's Products and their competitive products or services, to investigate matters similar to those listed above in developing and launching a new product, and to collect statistics; | ||
| 11. | To provide gifts, rewards, remembrances or presents in token of Pfizer's gratitude for cooperation in investigation, research, survey or lecture meetings; | ||
| 12. | To inform symposia, lecture or explanatory meetings, and/or academic conferences sponsored, cosponsored or supported by Pfizer, to ask to participate in such symposia, meetings and/or conferences, and to report the results of them; | ||
| 13. | To reply to, examine or investigate inquiries or complaints about, or contacts for the Company's Products; | ||
| 14. | To provide New Year's cards, summer greeting cards, letters of thanks, Christmas cards and/or any other seasonal greeting cards, any goods for friendship, congratulations or condolences or summer or year-end presents, and any kinds of information or communication concerning any major changes in Pfizer's representative or any other important officers, organization, company name, head office address, or any other significant matters; | ||
| 15. | To notify, inform or send any printed materials issued by Pfizer in connection with the Company's Products, medicine and/or pharmacy; | ||
| 16. | To notify, report to and/or communicate competent governmental authorities under the relevant laws and regulations; | ||
| 17. | To evaluate or communicate prospective employees; | ||
| 18. | To conduct business operations incidental to any of the items above; and/or | ||
| 19. | For any other specific purposes notified at the time of collecting or obtaining personal information. |
||
| 2.1.2 | For the personal information of Pfizer's officers and employees, their family members and relatives, Pfizer's retired officers and employees, and their family members and relatives (hereinafter referred to as "Employee Information"): |
||
| 1. | To contact or communicate any of them on business; | ||
| 2. | To manage attendance and absence, and to pay wages and bonuses; | ||
| 3. | To conduct personnel management, including employee affairs, employee performance evaluation, development of potential, welfare and safety and health care; | ||
| 4. | To contact or communicate the union, mutual aid association, health insurance association, and/or affiliated or subsidiary companies; | ||
| 5. | To accept, carry out and/or manage applications and procedures as provided for in the internal rules; | ||
| 6. | To exercise the legal rights that Pfizer possesses and to fulfill the obligations that Pfizer assumes; | ||
| 7. | To notify, report to and/or communicate competent governmental authorities under the relevant laws and regulations; | ||
| 8. | To conduct business operations incidental to any of the items above; and/or | ||
| 9. | For any other specific purposes notified at the time of collecting or obtaining personal information. | ||
| Pfizer will not provide personal information to third parties, except in case of providing it to a third party as set forth in Section 2 (Purposes of Using Personal Information, etc.) above or unless: |
||
| 1. | The principal has given consent; | |
| 2. | Pursuant to a law or ordinance; | |
| 3. | Necessary to protect human life, safety, or property when getting the principal's consent is difficult; | |
| 4. | Required to co-operate with the lawful activities of a national agency, local government organization, or person or organization entrusted with such a task, and obtaining the principal's consent would interfere, or be likely to interfere, with the carrying out of such activities; | |
| 5. | Personal information is disclosed or provided in such form as it is impossible to identify the principal; or | |
| 6. | Use of the personal information falls under Section 4 (Joint Use) below. | |
| 4.1 | For Customer Information: Pfizer will use personal data jointly with the third party set forth below: |
| Personal data subject to the joint use | Name, address, place of work, phone number, e-mail address and any other contact addresses | |
| Name of the joint user | Pfizer Health Research Foundation | |
| Purposes of use by the joint user | As regards Pfizer Health Research Foundation, for investigation, research, research aid, bringing up of researchers, and/or international exchange in connection with health research. As regards Pfizer, for the purposes listed in Section 2 (Purposes of Using Personal Information, etc.). | |
| Person responsible for the management of the personal data | Pfizer Japan Inc. Shinjuku Bunka Quint Building 3-22-7, Yoyogi, Shibuya-ku Tokyo 151-8589 |
| 4.2 | For Employee Information: For detailed information about the joint use of the Employee Information, please make inquiries to the following: Pfizer Japan Inc. Shinjuku Bunka Quint Building 3-22-7, Yoyogi, Shibuya-ku Tokyo 151-8589 Legal Affairs Department |
| When any principal who is the subject of Pfizer's preserved personal data makes a request to disclose such data, Pfizer will respond to it within a reasonable period and scope after properly identifying the individual, in accordance with the provisions of all the applicable laws and regulations concerning the protection of personal information. |
| When any principal who is the subject of Pfizer's preserved personal data makes a request to correct, add to, or delete such data, and if the data contains anything differing from the actual facts, Pfizer will correct, add to, or delete it within a reasonable period and scope after properly identifying the individual, in accordance with the provisions of all the applicable laws and regulations concerning the protection of personal information. |
| When any principal who is the subject of Pfizer's preserved personal data makes a request to cease the use of such data or eliminate it, Pfizer will cease the use of or eliminate it within a reasonable period and scope after properly identifying the individual and confirming that the reason(s) for such request is (are) reasonable, in accordance with the provisions of all the applicable laws and regulations concerning the protection of personal information. Please be aware, however, that after ceasing use of or eliminating such personal data, in whole or in part, Pfizer may not provide the principal with such an adequate service as requested by him or her, to Pfizer's regret. For such personal data as held by Pfizer pursuant to the relevant laws and regulations, Pfizer may not accept a request to cease the use of or eliminate the data. Also, after ceasing the use of or eliminating the personal data so requested, Pfizer may continue to hold the minimum information necessary to identify such data, as a record. |
| Pfizer will accept any of requests set forth in Section 5 (Disclosure), Section 6 (Correction, Addition and Deletion) and Section 7 (Cease Use and Elimination), or any of requests for notification of the intended purposes of use and cessation of disclosing to third parties, in connection with preserved personal data maintained by Pfizer (hereinafter collectively referred to as "Requests for Disclosure"), and any other inquiries for such data, as follows. Please be aware that to ensure a proper management of personal information, requests in such a manner other than set forth below may not be accepted. The personal information obtained in the course of responding to any of Requests for Disclosure will be used only for responding to such Request within a reasonable scope: |
||
| 8.1 | Procedure for acceptance: Please post Requests for Disclosure to the address given below, attaching the prescribed documents, including a Request Form and identity confirmation document. Pfizer will respond to it in writing to the address written on the identity confirmation document submitted. If unable to comply with any of Requests for Disclosure under any of the laws and regulations concerning the protection of personal information, Pfizer will reply by informing that Pfizer may not comply with such Request and will take measures differing from those requested: |
|
| 8.1.1 | Postal address for Requests for Disclosure: Pfizer Japan Inc. Shinjuku Bunka Quint Building 3-22-7, Yoyogi, Shibuya-ku Tokyo 151-8589 Legal Affairs Department |
||
| 8.1.2 | Documents to be submitted in making Requests for Disclosure: | ||
| (1) | Request Form .......... 1 (copy); |
||
| (2) | (2) A copy of driver's license, passport, health insurance card, resident registry card with photograph, alien registration card, pension booklet or any other official certificate by which the identity of the principal can reasonably be specified .......... 1; | ||
| (3) | (3) A stamped return envelope in A4 format .......... 1; | ||
| (4) | When making any of Requests for Disclosure through an agent, in addition to the documents listed in subsections (1) and (3) above, one (1) copy of the documents listed in subsection (2) above for each of the principal and agent, and a power of attorney showing the right to represent; and | ||
| (5) | A postage stamp of the amount equal to three hundreds Japanese yen (JPY300) per request for a request for notification of the intended use or disclosure of the preserved personal data maintained by Pfizer. |
||
| 8.2 | Days required to respond to Requests for Disclosure: Please understand that it will require about seven (7) business days after receipt of the documents set forth in subsection 8.1.1 above with necessary items completed to respond to any of Requests for Disclosure. |
|
| 8.3 | Fees: Pfizer charges a fee of three hundreds Japanese yen (JPY300) per request for a request for notification of the intended use or disclosure of the preserved personal data maintained by Pfizer. Please include a postage stamp of the amount equal to three hundreds Japanese yen (JPY300) with the documents for submission in making any of such Requests for Disclosure. |
| Some Pfizer websites may use a mechanism called a "cookie", which enables us to learn when and how such websites have been visited by how many persons. However, Pfizer does not use this mechanism to collect the personal information of the persons who visit Pfizer websites but utilizes it to improve them with the information obtainable through such system. |
| Pfizer selects only websites useful enough and in accord with the established standards, to which Pfizer websites link. However, websites are changing hour by hour, so Pfizer cannot guarantee the quality of every website to which Pfizer websites link. Pfizer is not responsible for the safety of personal information at websites of other companies which are linked to Pfizer website. |
| Pfizer is a member company of The Federation of Pharmaceutical Manufacturers' Associations of Japan (hereinafter referred to as "FPMAJ") being a certified personal information protection organization certified by the Minister of the Ministry of Health, Labour and Welfare. FPMAJ accepts complaints about the handling of personal information by its member companies. <Contact information of FPMAJ> The Federation of Pharmaceutical Manufacturers' Associations of Japan Personal Information Protection Center Tokyo Yakugyokaikan 2-1-5 Nihonbashi-honcho, Chuo-ku Tokyo 103-0023 Phone: 03-3270-1810 Office hours: 10:00 - 16:00 (Closed on Saturdays, Sundays, national holidays, year-end and new year holidays and other prescribed holidays) Homepage address: http://www.fpmaj.gr.jp/ |