Privacy Statement
The following Privacy Policy applies to any visitors to this site whether they are a member of ISSA of Orange County or not. For those who are members of the Chapter, and have configured their credentials to the Chapter Membership portal, you may edit your information at any time. If you choose to edit your information, please keep in mind that monthly updates from International may change this information if they have documented something different when you processed your membership or a renewal.
ISSA OC Board
ISSA-OC Privacy Notice [Last Updated 01/29/2019]
The Orange County Information Systems Security Association, Inc., (“ISSA OC” or “Chapter”), a regional chapter of the international Information Systems Security Association, Inc., (“Association”) has created this privacy statement (“Policy”) to demonstrate our firm commitment to the privacy and the confidentiality of our members. We endeavor to comply with all laws pertaining to privacy in the State of California in which we operate. The following discloses the information gathering and dissemination practices of the ISSA-OC.
Information Collection and Storage
- COLLECTION OF PERSONAL INFORMATION
When you request membership, we ask that you provide information that personally identifies you (“Personal Information”) and allows us to process your membership or to contact you for activities sponsored or managed by the Chapter. This information includes your name, work and home mailing address, the name of the company that you work for, phone numbers, e-mail addresses, your credit card information (if submitted for payment purposes), and other information as needed to support your relationship with the Chapter and/or assist you with issues stemming from the parent relationship with the Association.
We also collect the names, home mailing address, the name of the company that you work for, phone numbers, e-mail addresses, and potentially credit card information (if submitted for payment purposes), from attendees at our monthly meetings and symposiums to prepare name badges and process credit card payments.
2. STORAGE OF PERSONAL INFORMATION
This information is retained in the active database for as long as you are an active member of the Chapter. Once your membership has no longer been active for a period of 3 months, the information will be moved to a historical archive for purposes such as CPE audits or Fellowship submissions.
Credit card information obtained for purposes of processing payment for our monthly meetings and our annual symposium is not stored by the Chapter.
SHARING OF PERSONAL INFORMATION
1. ISSA INTERNATIONAL ORGANIZATION
To be eligible for membership in the Chapter, you must also be a member of the Association. We may share members’ contact information in order to verify eligibility and communicate enrollment information. In addition, the International Board of the Association has access to members’ contact information as a part of its oversight responsibilities.
- SERVICE PROVIDERS
We use third party service providers to help us to administer certain activities on our behalf, such as processing credit card payments, sending emails, analyzing usage of our websites and apps, tracking effectiveness of our marketing campaigns, and allowing users to connect to our website and social networking pages. We may share Personal Information about you with such third party service providers to the extent necessary for the sole purpose of enabling them to perform services on our behalf.
- THIRD-PARTY GOODS AND SERVICES
The Chapter does not share your Personal Information without your consent. We do not provide attendance lists to either the monthly meeting or our annual Symposium, unless at such time the membership votes to do so.
- OTHER DISCLOSURES
We may disclose Personal Information about you to others if we have your consent to do so in such form of consent as may be required under applicable law.
Subject to applicable laws in your jurisdiction, we may also disclose Personal Information about you to others as we believe to be necessary or appropriate: (a) under applicable law or regulation, including laws or regulations outside your country of residence; (b) to comply with legal process; (c) to respond to requests from public authorities and law enforcement officials, including officials outside your country of residence; (d) to enforce any of our terms and conditions or policies; (e) to protect our operations or those of any of our affiliates; (f) to protect the rights, privacy, safety or property of the Association, its members and affiliates, you or others; or (g) to permit us to pursue available remedies or limit the damages that we may sustain.
We may also transfer Personal Information to an affiliate, a subsidiary or a third party in the event of any reorganization, merger, sale, joint venture, assignment, transfer or other disposition of all or any portion of the Association’s business, assets or stock, including, without limitation, in connection with any bankruptcy or similar proceeding.
RETENTION OF PERSONAL INFORMATION
We will retain your Personal Information for the period necessary to fulfill the purposes for which your Personal Information has been collected as outlined in this Privacy Policy unless a longer retention period is required by law.
Review, Correction, Update, and Deletion of your Personal Information
The Chapter takes reasonable steps to help ensure that the Personal Information we collect from you is accurate, complete and current. You may request access to your Personal Information and request that erroneous or inaccurate Personal Information be updated. Pursuant to applicable law, you may also be entitled to request that your Personal Information be deleted. The Chapter will respond within 30 days to your requests in accordance with applicable law. For your protection, we may only implement requests with respect to the Personal Information associated with the email address that you use to send us your request, and we may need to verify your identity before implementing your request. Where permitted by applicable law, we may decline to process requests that jeopardize the privacy of others, are extremely impractical, would cause us to take any action that is not permissible under applicable laws, or where otherwise permitted. Additionally, as permitted by applicable laws, we may need to retain certain Personal Information for a longer period for recordkeeping purposes, such as retaining records relating to your purchases for warranty or accounting purposes.
Web Site Access
To help analyze how you and other visitors navigate Chapter websites and compile aggregate statistics about site usage and response rates, we, with assistance from third-party analytics service providers, collect certain information when you visit our site. This information includes IP address, geographic location of the device, browser type, browser language, date and time of your request, time(s) of your visit(s), demographics, page views and page elements (e.g., links) that you click. We may use cookies, pixel tags, web beacons, clear GIF’s or other similar tools on our site or in our email messages to assist us in collecting and analyzing such information. We use this information to provide better, more relevant content on our site, to measure the effectiveness of advertisements, to identify and fix problems, and to improve your overall experience on our site. We may also engage one or more third party service providers to provide online advertisements on our behalf. They may use a pixel tag or other similar technology to collect information about your visits to sites, and they may use that information to send you targeted advertisements. For more information regarding this practice and to opt-out of such collection and use of this information by our third-party service providers, please see http://www.networkadvertising.org/.
If you do not want information collected using these technologies, there is a simple procedure in most browsers that allows you to automatically decline many of these technologies, or to be given the choice of declining or accepting them. In addition, if you reside in a jurisdiction that requires us to obtain your consent to use cookies on our sites then you will have an opportunity to manage your cookie preferences on the sites, except that certain cookies are required to enable core site functionality and you cannot choose to disable those cookies.
LINKS
This site contains links to other sites providing information security updates or educational services which we consider to be of benefit to our members. ISSA OC is not responsible for the privacy practices or the content of such Web sites.
PUBLIC FORUMS
The Chapter may make a limited number of chat rooms, forums, message boards, and/or news groups available to ISSA OC members on its website or social media pages for discussion of information security issues and ISSA OC business. Please remember that any information that is disclosed in these areas becomes public information and you should exercise caution when deciding to disclose your Personal Information in that forum.
SECURITY
This site has security measures in place to protect against the loss, misuse, unauthorized access, and/or alteration of the information under our control.
The site is audited on a periodic basis to attempt to keep it up to date with good security practices, and protective measures are implemented on the site hosts. Personal member information is not stored on the web server. All such information is stored only on protected internal servers at the host site and managed solely by the chapter’s board of directors.
Corrections & Updates
Access, correction or deletion requests can be made as follows:
POSTAL MAIL
Information Systems Security Association of Orange County, Inc.
P.O. Box 54083
Irvine, CA 92619
Changes to this Policy
The Association may amend this Policy from time to time. You can determine when this Privacy Policy was last revised by referring to the "LAST UPDATED" date at the top of this policy. Any changes will become effective upon our posting of the revised Privacy Policy on our affected websites. We will provide notice to you if these changes are material and, where required by applicable law, we will obtain your consent. This notice will be provided by email or by posting notice of the changes on our affected websites or products/apps, consistent with applicable laws.
Your California privacy rights
If you are a resident of California, you have the right under the California “Shine the Light” law (Cal. Civil Code § 1798.83) to request, by regular or electronic mail, a list of the categories of personal information that were shared by the Chapter with third parties for direct marketing purposes during the immediately preceding calendar year, the names and addresses of those third parties, and if the nature of their business cannot reasonably be determined from their name, examples of the products and services marketed by them. However, as described above, except where necessary to fulfill an order from you for goods or services or as otherwise permitted by applicable law, the Chapter will not share your data with third parties unless you consent to such disclosure. Alternatively, you may opt out at any time from any information sharing previously consented to. For these reasons, the Chapter is not required to respond further to California customer inquiries under the California Shine the Light law.
Dispute resolution
If you feel that the Chapter is not abiding by its posted privacy policy, you should first contact us at [email protected] or speak to a board director at a meeting.
Thank you for your understanding and support of the ISSA Orange County Chapter.
ISSA OC Board