Privacy Notice
Vision Bank is committed to protecting your privacy and the security of your personal data. This Privacy Notice explains how we collect, use, share, and protect your personal data when you use our products and services, in compliance with relevant regulations.
Definitions
- Personal Data: Any data, regardless of its source or form, that may lead to identifying an individual specifically, or that may directly or indirectly make it possible to identify an individual, including name, personal identification number, addresses, contact numbers, license numbers, records, personal assets, bank and credit card numbers, photos and videos of an individual, and any other data of personal nature.
- The Law: The official personal data protection law (PDPL) in the Kingdom of Saudi Arabia.
- Personal Data Protection Officer (PDPO): The person responsible for overseeing our compliance with data protection laws and regulations.
- Know Your Customer (KYC) Requirements: Are regulations that require financial institutions to verify the identity of their customers and assess the risks associated with money laundering and terrorism financing.
- Anti Money Laundering (AML) Law: Is a law that aims to prevent and combat money laundering and terrorism financing in the Kingdom of Saudi Arabia. It includes measures such as reporting suspicious transactions.
Personal Data We Collect
The following is an example of the personal data we collect (but not limited to):
- Data collected through the waiting lists mobile app and surveys, such as name, age, email, and mobile number.
- Data collected through the bank's official mobile app, such as ID number, name, date of birth, place of work, and sources of income.
- Data collected through the use of the bank's services, website, or official mobile app (such as cookies).
- Personal data related to banking services such as account numbers and credit cards.
Purpose of Processing Personal Data
We collect and use your personal data for the following purposes:
- Opening and managing accounts: We need your personal data to verify your identity, assess your financial information, and open and manage your accounts, such as current, saving, credit card, and loan accounts.
- Providing banking services: We use your personal data to process transactions, issue payments, receive deposits, eligibility assessment, provide online banking access, and answer your questions about our products and services.
- Detecting and preventing fraud: We use your personal data to monitor for suspicious activity and prevent fraud, money laundering, and other financial crimes.
- Complying with legal and regulatory requirements: We are required to collect and use your personal data to comply with laws and regulations, such as know-your-customer (KYC) requirements and anti-money laundering (AML) law.
- Marketing: We use your personal data to provide you with personalized offers and marketing messages, and you can request to stop this at any time.
- Analytics: We use your personal data to conduct market research and analysis to improve our products and services offered to you.
- Without collecting your personal data, we may not be able to provide you with the highest level of our services and products, or we may be unable to provide them to you at all.
Lawful Basis of Processing
We process your personal data based on the following lawful grounds:
- Contract: We process your personal data to fulfill our contractual obligations to you, such as managing your accounts and providing you with the banking services you have requested.
- Legal obligation: We are required to process your personal data by law, to fulfill KYC requirements, AML law, and SAMA regulations.
- Legitimate interest: We may process your personal data for our legitimate business interests, such as preventing fraud, conducting market research, and improving our products and services. In these cases, we will always balance our legitimate interests against your data protection rights.
- Consent: Your consent to the processing of your personal data for specific purposes, such as sending you marketing messages, or sharing your data with a third party for the purpose of providing banking services while maintaining confidentiality and ensuring that the sharing is limited to the scope of the required service, and you can withdraw your consent at any time.
Personal Data Disclosure
As part of our banking services and legitimate processing, we may share your personal information with entities inside or outside the Kingdom of Saudi Arabia. In these circumstances, we will follow the Personal Data Protection Law and ensure data is secure in accordance with local laws and regulations. This sharing of data may include [but are not limited to] entities such as:
- Regulatory bodies like SAMA and the National Data Management Office (NDMO)
- Law enforcement authorities
- Third-party service providers who support our operations
- Saudi Credit Bureau (SIMAH)
Personal Data Storage
The bank has the right to retain personal data in accordance with the relevant laws and regulations. We are committed to the following with regards to the storage and retention of personal data:
- Personal data will be stored within the borders of the Kingdom of Saudi Arabia.
- We will implement the highest standards of protection to ensure the security of data and guarantee safe and efficient access to it. We use advanced encryption techniques and access control management to ensure the integrity, confidentiality, and availability of data.
- We will observe all the rights of the data subject as stipulated in the law.
Personal Data Protection Officer
Our Data Protection Officer is responsible for overseeing our compliance with data protection laws and regulations. You can contact the bank at data-pri.contact-info.[email protected] with any questions about our privacy notice or how we handle your personal data.
To exercise your rights related to your personal data, refer to the following section.
Data Subject Rights
You have the following rights under the personal data protection law (PDPL):
- Right to know: You have the right to know the purpose and the lawful basis for processing of your personal data.
- Right to access: You have the right to access your personal data that we hold.
- Right to rectification: You have the right to correct any inaccurate or incomplete personal data we hold about you, without prejudice to official government records.
- Right to erasure: You have the right to request that we erase your personal data in certain circumstances, without prejudice to the regulations issued by the central bank in this regard.
- Right to data portability: You have the right to receive your personal data in a portable format.
- Right to object: You have the right to object or withdraw your previous consent to certain types of processing, such as direct marketing.
- Right to restriction of processing: You have the right to request that we restrict the processing of your personal data in certain circumstances.
Changes to Privacy Notice
We reserve the right to amend this Privacy Notice from time to time in accordance with changes to the Bank's internal procedures, regulations and related laws. Your continued use of the Bank's accounts and services constitutes your consent to any updates that may be made to this Privacy Notice.
Additional Resources
For further information on your data subject rights under Personal Data Protection Law, please refer to the official link on Saudi Data & AI Authority:
https://sdaia.gov.sa/en/SDAIA/about/Documents/Personal Data English V2-23April2023- Reviewed-.pdfIf you have any questions or require assistance with submitting your request, please contact our Customer Care team through the customer care phone number or the email functionality within the app.
Exercising Your Data Subject Rights at Vision Bank
Vision Bank respects your right to control your personal data under personal data protection law (PDPL). You can submit data subject requests by any of the following means:
- Calling our customer care center at 800 .contact-info. 100 0010 .
- Sending an email to data-pri.contact-info.[email protected] from the email registered with the bank.
- Through the mobile app's email functionality.
How to submit a request using the mobile app:
- Open Vision Bank mobile app.
- Navigate to the "More" menu by tapping on the 3 dots at the bottom of the screen.
- Select "Customer Care".
- Choose "Email" to launch your preferred email application.
- Compose your email, clearly stating:
- The specific data subject right you wish to exercise (e.g., access, rectification, erasure)
- The personal data to which your request applies
- Any relevant details or supporting information
- Send your email from the email registered with the bank.
Processing Your Request:
- Upon receipt, you will receive a message confirming the receiving your request with a reference number.
- Your request will then be forwarded to our personal data protection officer for validation and processing in accordance with data protection regulations.
- The personal data protection officer will assign your request to the appropriate team for fulfillment.
- We will keep you informed of the progress and notify you via email once it's completed.