Privacy and Personal Data Protection
In order to comply with the Law 13.709/2018 (General Personal Data Protection Law – LGPD) and to ensure the protection of the personal data of our stakeholders, we promote the constant awareness of our employees, acting with a focus on transparency, complying with the rights of data owners and adopting technical and administrative measures of prevention and security.
Our approach
Main actions
1. Specific section on privacy and data protection in the Code of Ethical Conduct;
2. Mandatory training for employees with concepts and practical cases;
3. Advisory consulting for Petrobras System’s companies;
4. Constant evolution of information security processes and controls, with a focus on personal data;
5. Anti data leak rules with the use of Data Loss Prevention (DLP) tool to detect potential incidents;
6. We have an information security incident response team that acts on potential data protection violation scenarios;
7. Strengthening of initiatives to ensure privacy by design in projects, processes and in the development of technological solutions;
8. Inclusion of the topic in the Integrity Due Diligence process, in priority contracting families, in order to assess the data protection practices of our suppliers; and
9. Automatic tagging system for personal data in contracts that will be disclosed on the Transparency Portal, in addition to a booklet on LGPD and LAI to guide our employees.
For more information on the subject, consult our Privacy and Personal Data Protection Booklet.