Privacy

Privacy Policy

How DAMA Kuala Lumpur & Selangor collects, uses and protects your personal data.

Issued by PERSATUAN PENGURUSAN DATA KUALA LUMPUR & SELANGOR (DAMA), ROS registration PPM-016-14-27102023. This notice is provided under the Personal Data Protection Act 2010 (PDPA) and its 2024 amendments.

What we collect

  • Contact details: name, email address, phone number and correspondence address (including state).
  • Professional details: job title, organisation, background and topics of interest.
  • For students: institution, expected graduation year and proof of student status.
  • For corporate members: organisation name, SSM registration number, contact person and the people holding corporate seats.
  • Payment records: amount, date, bank transfer reference and the receipt you upload. We never collect card details.

How we use it

  • To manage membership applications, payments, receipts, renewals and member records.
  • To communicate with you about DAMA activities, events, newsletters and programmes.
  • To run surveys and analysis that help us serve the data management community better.
  • To meet our obligations as a registered society, including audit and annual reporting.

Who can see it

Your data is accessible only to authorised DAMA Kuala Lumpur & Selangor office bearers who manage membership and finance. We do not sell your data. We may share it with service providers that host our systems, under confidentiality obligations, or where required by law.

How we protect it

Accounts are password-protected, payment proofs and student documents are stored privately, and staff access is limited by role and logged.

Your rights

You may access and correct your personal data from the member portal, ask for a copy, or withdraw your consent for communications at any time. Withdrawing consent may affect our ability to provide membership services. To make a request, email info.damamalaysia@gmail.com.

Retention

We keep membership and payment records for as long as you are a member and for up to seven years afterwards for audit purposes, after which they are deleted or anonymised.

Last updated: October 2026.