Privacy Policy for Applicants
1. Introduction
The Howden Group (hereinafter also ‘Howden’, ‘we’, or ‘us’) processes personal data relating to you or other individuals (‘third parties’).
Throughout this document, we use the term ‘data’ interchangeably with ‘personal data’ or ‘personal information’. ‘Personal data’ refers to any information relating to an identified or identifiable natural person. A ‘data subject’ is any individual whose personal data we process. ‘Processing’ means any operation performed on personal data, such as its collection, storage, use, modification, disclosure, or deletion. The terms ‘process’ and ‘processing’ are used synonymously in this policy.
This Privacy Policy applies to the following companies within the Howden Group: Howden Switzerland Holding Ltd., Howden Switzerland Ltd., Swibro Ltd., Vorsorge Partner AG, Howden Broker Service Switzerland Ltd., Howden Liechtenstein AG, Howden Sky AG.
Our data protection practices comply with the Swiss Federal Act on Data Protection (FADP), including the Ordinance on Data Protection (Data Protection Ordinance, DPO), as well as the EU General Data Protection Regulation (GDPR), with applicability depending on the specific circumstances of each case.
2. What does this Privacy Policy cover?
This Privacy Policy provides information about the personal data we process in connection with all current and former full-time and part-time employees. Please also refer to our general Privacy Policy at this link.
3. Who is the controller?
The controller and contact for data processing is the Howden company that carries out the respective processing (e.g. provides the service under your contract, maintains a business relationship with you, or operates the website you visit).
3.1 Howden Switzerland Holding Ltd.
The controller responsible for services provided by Howden Switzerland Holding Ltd. is:
Howden Switzerland Holding Ltd.
Industriestrasse 8
6300 Zug
[email protected]
3.2 Howden Switzerland Ltd.
The controller responsible for services provided by Howden Switzerland Ltd. is:
Howden Switzerland Ltd.
Industriestrasse 8
6300 Zug
[email protected]
3.3 Swibro Ltd.
The controller responsible for services provided by Swibro Ltd. is:
Swibro Ltd.
Rorschacher Strasse 294
9016 St. Gallen
[email protected]
3.4 Vorsorge Partner AG
The controller responsible for services provided by Vorsorge Partner AG is:
Vorsorge Partner AG
Pestalozzistrasse 2
9000 St. Gallen
[email protected]
3.5 Howden Broker Service Switzerland Ltd.
The controller responsible for services provided by Howden Broker Service Switzerland Ltd. is:
Howden Broker Service Switzerland Ltd.
Picardiestrasse 3A
5040 Schöftland
[email protected]
3.6 Howden Liechtenstein AG
The controller responsible for services provided by Howden Liechtenstein AG is:
Howden Liechtenstein AG
Im Bretscha 2
9494 Schaan (FL)
[email protected]
3.7 Howden Sky AG
The controller responsible for services provided by Howden Sky AG is:
Howden Sky AG
Im Bretscha 2
9494 Schaan (FL)
[email protected]
4. What personal data is processed?
We collect the application data that you provide to us (e.g. first and last names, standard correspondence details such as postal address, email address, and telephone number, application documents, and information disclosed during interviews). This data is stored in our application database. We may also receive data from third parties (e.g. information from your references or from a recruiter).
5. For what purposes and on what legal basis do we process your personal data?
We process application data to assess your suitability for the advertised position and to conduct the recruitment process. The legal basis for this processing is the implementation of pre-contractual measures in connection with your application. With your consent, we may also retain your data for consideration in future job opportunities.
6. Whom do we disclose your personal data to?
When you apply for an open position with us, we process the personal data you provide in order to manage the recruitment process and to contact you in this regard. The legal basis for this is the implementation of pre-contractual measures.
During the recruitment process, only those directly involved in the selection process (e.g. recruiting managers, the human resources department, or potential supervisors) have access to your data. In addition, the following categories of recipients may also have access to your data:
• companies within the Howden Group, where involved in the recruitment process;
• service providers in Switzerland and abroad, such as shared service centres within the Howden Group (e.g. legal, compliance, or finance), IT service providers, application management system providers, external recruiters, or consulting firms supporting us in processing applications;
• authorities and courts, where we are legally obliged or entitled to disclose personal data.
7. Is personal data transferred abroad?
As part of the recruitment process, we may also disclose your personal data to other entities. These recipients may be located not only in Switzerland, but also in Europe and in other countries worldwide. As a rule, personal data is transferred only to countries whose level of
data protection has been recognised as adequate by the Swiss Federal Council or the European Commission.
If a recipient is located in a country that does not provide an adequate level of data protection, we will ensure appropriate protection of your personal data by means of contractual safeguards (such as the European Commission’s Standard Contractual Clauses) or other recognised mechanisms.
In exceptional cases, a transfer may also take place where a legal basis or an applicable derogation permits it – for example, in connection with legal proceedings, for reasons of overriding public interest, for the performance of a contract, on the basis of your consent, or where the data concerned has been made publicly accessible.
8. How long do we process your personal data?
We store and process application data only for as long as necessary to achieve the purposes for which it was collected or as required by statutory retention obligations. If you are not hired, we will generally delete your data within six months after completion of the recruitment process. With your consent, we may retain your data beyond this period for up to two years in order to consider you for suitable future vacancies. If your application results in the conclusion of an employment contract, we will process your data for the purpose of administering the employment relationship. In this case, our Privacy Policy for Employees also applies.
You may withdraw your application or your consent to the storage of your application data at any time. This does not affect the retention of data that we are legally required to keep.
9. How do we protect your personal data?
We implement appropriate technical and organisational security measures to ensure the confidentiality, integrity, and availability of personal data, to protect it against unauthorised or unlawful processing, and to mitigate the risks of loss, accidental alteration, unintended disclosure, or unauthorised access.
10. Do we use automated individual decision-making?
In some cases, decisions affecting you may be made entirely through automated processing, meaning that such decisions are taken without human involvement. As a general rule, we do not engage in automated decision-making. If we plan to use automated decision-making in individual cases, we will inform you accordingly.
11. Do we use cookies and tracking pixels?
Please visit our cookie policy at this link to learn more about our use of cookies and tracking pixels.
12. What data do we process on our social media pages?
We maintain online presences on social media networks and third-party platforms (e.g. LinkedIn, Instagram; hereinafter referred to as ‘platforms’), such as fan pages, channels, or profiles. If you interact with us via such platforms – for example, by viewing our content, posting comments, or sending us messages – we process the personal data described in this Privacy Policy. We receive this data either directly from you or through the respective platform.
Please note that the operators of these platforms also collect and process personal data about your use of our online presences under their own data protection responsibility. This applies in particular to information about your usage behaviour and interests, which they may use for their own purposes, such as market research, audience measurement, or personalised advertising. The processing of your data by the platform operators is governed by their own privacy policies. We have no influence over the data processing carried out by these platforms.
13. What rights do you have?
To make it easier for you to exercise control over the processing of your personal data, you have the following rights in relation to our data processing, depending on the applicable data protection law:
• right of access – to request information about whether and which personal data we process about you, for what purposes, for how long, as well as the origin of the data and the categories of recipients to whom we disclose it;
• right to rectification – to request that we correct or complete inaccurate or incomplete data;
• right to restriction of processing;
• right to erasure (‘right to be forgotten’) – to request the deletion of personal data;
• right to data portability – to request that we provide certain personal data in a commonly used electronic format or transfer it to another controller;
• right to object – to object to the processing of your data, particularly in connection with direct marketing;
• right to prevent future processing or disclosure to third parties;
• right to withdraw consent – where processing is based on your consent, to withdraw that consent at any time with effect for the future;
• right not to be subject to a decision based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you.
If you wish to exercise any of these rights against us (or one of our group companies), please contact us by email at [email protected]. To prevent misuse, we must verify your identity (e.g. by requesting a copy of your ID, where necessary).
Please note that these rights may be subject to conditions, exceptions, or limitations under applicable data protection law (e.g. to protect the rights of third parties or trade secrets). Where applicable, we will inform you accordingly.
You also have the option of lodging a complaint with the competent data protection supervisory authority. A list of authorities in the European Economic Area (EEA) can be found here. The contact details of the Swiss supervisory authority – the Federal Data Protection and Information Commissioner (FDPIC) – can be found at this link. The contact details of the data protection authority in Liechtenstein can be found here.
14. Can this Privacy Policy be changed?
We may amend this Privacy Policy at any time. The version published on this website is the current version.
November 2025