Privacy Notice
1. introduction
This Privacy Notice is intended to inform you about how Asper Tecnologia (“Asper”) and its affiliates collect, use, and share your personal information. Our goal is to transparently demonstrate Asper’s commitment to protecting and safeguarding your personal information, as well as to highlight our compliance with applicable laws and best practices in privacy and data protection.
For information about cookies and similar technologies, please also see our Cookie Notice.
2. What personal data do we collect?
Access Data: When you access our website, we may collect data such as the frequency, date, and time of access, as well as activities related to your visit. In addition, we may collect your Internet Protocol (IP) address and access log.
Contact Information: To respond to your requests via the “Contact Our Team” form and to present, offer, or market Asper’s products and services, we may collect information such as your name, email address, phone number, company, and job title.
Whistleblower Channel: To ensure compliance with our compliance program, we have established a channel where you may, if you prefer, identify yourself or even submit an anonymous message to report practices that violate our values and principles. Please note that you may report incidents that contain or involve third-party personal data, such as names, email addresses, and details of the incident, among other applicable information.
Recruitment Information: If you are interested in working with us, please submit your resume so we can assess whether your professional profile matches the open position.
Third-party data: We also have access to certain information provided by third parties through other platforms; for example, when you view our posts on social media platforms such as LinkedIn, among others. Such information is generally technical in nature and does not allow us to readily identify you.
Data Processed in the Execution of Projects and Services: During the execution of contracts, projects, or services, we may process personal data provided by the customer or generated during the activities performed, such as identification data, contact information, access data, usage records, logs, and other information necessary to fulfill the contracted scope.
We do not make decisions based on your user profile, except when necessary to uphold our legitimate interests in ensuring information security or as permitted by law.
3. Why Asper Processes Your Data
We collect personal data only for legitimate, transparent, and specific purposes related to providing excellent service. The purposes for processing data include, but are not limited to, the following:
Providing high-value technological solutions recognized internationally for: (i) privacy and compliance; (ii) information security; (iii) observability; (iv) application monitoring and performance; (v) data science and infrastructure;
Responding to your inquiries and fulfilling requests regarding our products and services;
Facilitating talent acquisition through recruitment and selection processes, updating our talent pool with candidate authorization;
Managing our websites to improve navigation and enhance information security;
Complying with legal and regulatory obligations, and protecting our rights while fulfilling our legitimate interests or those of third parties, where applicable;
Conducting statistical analyses on user behavior online.
Provide managed technology and information security services (MSSP), including monitoring of environments, networks, applications, and devices; analysis of logs, events, and alerts; threat prevention and detection; incident response; and monitoring of the availability and performance of the monitored environments.
Execute and manage contracted projects and services, including planning, implementation, configuration, support, monitoring, documentation, communication with stakeholders, and delivery of the agreed-upon results.
Handle the administrative and operational management of employees, including hiring and termination processes, contract administration, payroll, benefits, time tracking, training, performance evaluations, health and safety, access management, and compliance with legal and regulatory obligations.
In the projects and services provided to clients, Asper may process personal data on behalf of and in accordance with the instructions of the respective client, who, as a general rule, will act as the data controller, while Asper will act as the data processor, subject to the applicable contractual and legal limitations.
4. Who do we share your data with?
Your personal data may be shared with third parties solely for the purposes described in this Notice and based on an appropriate legal basis:
Business partners: Companies collaborate with us in providing services and delivering technology solutions, contributing to the continuous improvement of the services and solutions we offer our customers, always in accordance with contractual data protection obligations
Service providers and third parties: Companies contracted to assist with internal operations and processes, such as managing our website, and partners who assist us with the recruitment and selection process.
Social media: Platforms such as LinkedIn and Instagram, for sharing institutional content. Asper does not control how these platforms process data.
Legal, Administrative, and Regulatory Authorities: When required to comply with applicable laws or at the request of competent authorities.
We require all of our partners, suppliers, and service providers to comply with the LGPD and to adopt appropriate data protection measures, as formalized in specific contractual clauses.
5. International transfer
We may carry out international data transfers to the extent that certain platforms or even business partners may, from time to time, have data centers located abroad. However, we will investigate whether the country to which the data may be stored, retained, or transferred provides a level of personal data protection that meets the highest international standards and applicable best practices. In addition, such transfers will be based on one of the grounds for authorization provided for in the LGPD.
6. How long do we store your data?
Your data is stored only for as long as necessary to fulfill the purposes outlined above or to comply with legal and regulatory requirements. We do not retain your data longer than necessary for these specified purposes.
7. How do we protect your data?
We have implemented appropriate technical and organizational measures to protect your personal data against unauthorized access, destruction, loss, alteration, disclosure, or any other form of improper processing.
8. Your rights as a data subject
In the interest of transparency, we would like to inform you that you have the following rights, without prejudice to any others that may apply:
Right to confirmation and access. You can verify if we are processing your personal data and request access to such information.
Right to correction. You can correct inaccurate, incomplete, or outdated information.
Anonymization, Blocking or Deletion. You may request anonymization, blocking, or deletion of your data if it is unnecessary, excessive, or processed in violation of the LGPD.
Right to Deletion and Revocation of Consent. You can request the deletion of data processed based on your consent and revoke your consent to prevent further processing by us.
Data portability. Upon request, you can obtain a copy of your data in a structured, commonly used, and machine-readable format, respecting commercial and industrial secrecy as stipulated by the LGPD.
Other rights. You have the right to request a review of decisions based solely on automated processing, obtain information about entities with whom we share your data (including public and private entities), and file complaints with the ANPD (National Data Protection Authority) or other relevant entities.
9. Children and Teenagers
Our website and services are not intended for children or adolescents; therefore, they should only browse the site under the supervision or with the permission of a parent or legal guardian, where applicable. We do not intentionally collect personal data from children through our website. If we become aware that data from children or adolescents has been collected inadvertently, we will take the necessary measures to delete it, in accordance with applicable law.
10. Cookies and Similar Technologies
Our website uses cookies and similar technologies to ensure it functions properly, improve your browsing experience, and collect statistical data. For detailed information about the cookies we use, their purposes, how long they last, and how to manage your preferences, please see our Cookie Notice.
11. Updates to this notice
We reserve the right to amend this Privacy Notice as necessary due to changes in laws or regulations, or in accordance with our internal policies. The updated version will always be available on this page, along with the date of the last update.
12. Data Protection Officer
If you have any questions regarding this Privacy Notice or our practices regarding the protection of your personal data, please contact our Data Protection Officer, Selnise Almeida, at dpo@asper.tec.br.
Last updated: July 27, 2026