Skip to main content

Mediterraneo First Care, a subsidiary of Mediterraneo Hospital, recognizes the critical importance of protecting the personal data of individuals and ensuring their lawful and proper processing. In this context, Mediterraneo First Care – Santorini complies with the fundamental principles of personal data processing, respects the rights of individuals, and ensures that the personal data it holds:

  • Are collected for specified, explicit, and lawful purposes, as outlined in the Processing Activities Register it maintains, and are collected with the consent of the individual where required.
  • Are processed only for the purposes for which they were collected and/or for legal and regulatory reasons, or to protect the legitimate interests of Mediterraneo First Care.
  • Are not subject to further processing beyond the defined purpose.
  • Are adequate, relevant, and limited to the minimum necessary for the purposes of processing.
  • Are processed lawfully in accordance with the rights of individuals, are accurate, and updated when necessary, especially before making critical decisions about individuals.
  • Are not kept for a period longer than required for the purpose of processing and/or for compliance of Mediterraneo First Care with legal and regulatory obligations.
  • Are kept secure from unauthorized access, loss, or destruction.
  • Are transferred to third parties only when an adequate level of protection is ensured.

The above principles are adhered to by all employees of Mediterraneo First Care, as well as by third parties who perform personal data processing tasks on its behalf.

To ensure the above, Mediterraneo First Care:

  • Implements a Personal Data Management System that covers all of its activities for monitoring and controlling the application of this policy, as well as evaluating its effectiveness in compliance with the regulatory framework and best practices for personal data protection.
  • Implements procedures to fully satisfy the rights of individuals.
  • Clearly informs individuals about the processing of their data.
  • Integrates personal data management requirements into all corporate functions and processes related to their processing.
  • Has defined roles and responsibilities related to data management.
  • Provides clear instructions to staff and third parties performing tasks on its behalf for the safe use and transmission of data in accordance with the Personal Data Management System.
  • Ensures that the transfer of data to third parties and their processing on behalf of the company is carried out in compliance with the regulatory framework for data protection as well as this policy.
  • Designs, adopts, and monitors the implementation of a system of indicators and objectives for the secure and lawful management of data.
  • Invests in the continuous training, awareness, and education of its staff on personal data protection, as well as in the continuous improvement of expertise and its transmission to all staff members.
  • Provides all necessary resources for the effective implementation of the Personal Data Management System.
  • Has appointed a Data Protection Officer (DPO).
  • Communicates this policy to all staff and ensures its continuous update to achieve full compliance with the applicable regulatory framework.

Mediterraneo First Care is committed to continuous monitoring and compliance with the regulatory and legal framework and to the ongoing implementation and improvement of the effectiveness of the Personal Data Management System.

Data Protection Officer (DPO):
8-12 Ilias str., Glyfada 16675 Athens
Tel: +30 210 9117000, email: dpo@mediterraneohospital.gr

Contact Us

Data Protection Officer (D.P.O.): 8-12, Ilias str., Glyfada 16675 Athens, T.: +30 210 9117000