Requests under the GDPR concerning the processing of personal data can be submitted through our personal data portal:
Aalto university personal data portal
Please note, however, that regular service addresses or contact person named in privacy notice for different services will still be used primarily for contact information changes and other routine changes.
You may also contact the data protection officer of Aalto University if you have questions or demands relating to the processing of personal data:
DPO: Anni Tuomela
Phone: 09 47001
Email: dpo(at)aalto.fi
If you consider the processing of your personal data to be an infringement of data protection legislation, you have the right to lodge a complaint with the Data Protection Ombudsman, which is the supervisory authority. Read more:
Home - Data Protection Ombudsman’s Office (tietosuoja.fi)
We have an obligation to communicate personally any security breach of personal data to those data subjects whom the breach concerns. The right enters into force if the breach is likely to result in a high risk to the rights and freedoms of the individual, e.g. in the form of identity theft, payment fraud or other criminal activity.
An information security team operates at Aalto (email security(at)aalto.fi) to process reported data protection and information security incidents concerning the university and to help resolve them, investigating whether data breaches have occurred.
We process personal data with care, and take proper care of data security. Up-to-date technical solutions such as firewalls and encryption are used.
In our processes, the personal data is processed only by our employees or our partners' employees who are entitled to process personal data. Access and read-only access to the data systems are determined and granted only to the extent required by the task and only to the individuals who need the personal data in the data system concerned in order to perform the task assigned to them.
We process your personal data in accordance with General Data Protection Regulation (GDPR), in a way that respects the rights and freedoms of the data subject. We ensure that data protection principles are followed at all stages of the processing of personal data.
Personal data is be processed manually (on paper) electronically and in various different data systems which are administered by either Aalto or its partner.
We have selected as service providers only those processors who comply with good personal data processing practices through appropriate technical and organizational measures, meet the requirements of the General Data Protection Regulation and are able to enforce your rights.