Main content

Privacy is everyone’s business
at Nokia

ribbon

Privacy enables trust

Privacy and the protection of personal data enable trust in our technology, our business, and our operations.

For us, respecting privacy is not only about being compliant with laws; it is fundamental to our values as a trustworthy and ethical company. It drives continuous improvement of privacy and data protection both in our practices and processes as well as our products and services.

We embed privacy in everything we do, as reflected in our privacy principles below.

Binding corporate rules

Our privacy program is based on binding corporate rules (BCRs), considered as the “gold standard” privacy compliance framework as they are the only international data transfer mechanism that carries individual regulatory approval.

Data processing and transfer terms

Using Nokia products and services may involve entrusting Nokia with processing data on our customers behalf. We recognize the importance of that responsibility and make data privacy a core part of the way we design, deliver, and support our offerings. Learn more in our Data processing and transfer terms.

Privacy principles

Explore our 10 principles below.

Transparency and notice

We inform individuals about how we collect, process, store and disclose their personal data at the time personal data is collected and when our practices change. 

Legal basis

We ensure we have a good reason or legal justification for collecting, using, and sharing personal data. Where appropriate and/or legally required, we offer individuals choices regarding the collection, use, or disclosure of their personal data.

Minimization and limitation on use

We only collect the minimum amount of personal data that is needed, and our use of personal data is consistent with the notice provided to the individual and balanced with individual’s reasonable privacy expectations.

Privacy by design

Privacy is a key consideration in the creation, delivery, implementation and support of our products and services, processes and tools. We consider these privacy principles when developing or modifying a product or service, process, or tool.

Retention and destruction

We keep personal data only as long as necessary to achieve the purposes for which personal data is collected and used. We are responsible for retaining personal data in accordance with applicable retention policies and deleting personal data securely.

Limited disclosures

We only share personal data with third parties for legitimate business reasons or as required or permitted by law. We take reasonable steps to ensure service providers and sub-contractors use personal data only as instructed by Nokia and have implemented appropriate measures.

Data integrity

We take reasonable steps to ensure that the personal data we use is accurate, relevant, complete, and up to date for the purposes for which it will be used.

Individual rights

We provide individuals with appropriate access to review their personal data and the ability to correct or delete inaccurate or incomplete personal data, consistent with applicable law. In some jurisdictions, individuals may also be able to exercise additional rights.

Security safeguards

We use appropriate technical and organizational security measures to safeguard personal data.

Cross-border transfers

We transfer personal data across country borders in accordance with the local laws of the country from which and the country to which the personal data is being transferred.

Privacy notices

Below you can find links to our key privacy notices. Please select the one most relevant to you.