Data Privacy Statement
Cyber Tec Security Ltd (“Cyber Tec Security”, “we”, “us”, or “our”) is committed to protecting and respecting your privacy.
This Privacy Notice explains how we collect, use and protect personal data when you interact with us or use our services, in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Our website:
https://www.cybertecsecurity.com
Who We Are
Cyber Tec Security Ltd is a UK and Jersey based cybersecurity certification and services company.
We deliver a range of cybersecurity services including:
- Cyber Essentials
- Cyber Essentials Plus
- Cyber Baseline
- IASME Cyber Assurance
- DCC
- Other IASME certifications
- Penetration testing
- Cyber security consultancy
- Associated cyber security and assurance services
Cyber Tec Security operates as an IASME Certification Body and works with organisations directly as well as through partners including Managed Service Providers (MSPs) and other certification bodies.
Contact Details
For any queries relating to personal data, data protection rights or this privacy notice please contact:
This email address can be used for:
- Data protection enquiries
- Subject Access Requests
- Requests to correct or delete personal data
- Any other privacy related matter
Personal Data We Collect
We may collect and process the following personal data:
Contact Information
- Name
- Job title
- Organisation name
- Email address
- Telephone number
- Business address
Organisation Information
- Company details
- Number of employees
- Country or region
- VAT number (where applicable)
Assessment and Certification Information
Where services such as Cyber Essentials or other assessments are undertaken we may collect information including:
- IP addresses
- Device names
- External office IP addresses
- Cloud services utilised
- Security configuration information relevant to the assessment
This information is required in order to deliver cybersecurity certification and security assessment services.
Communications
We may retain records of communications with us including:
- Emails
- Service enquiries
- Certification communications
- Support requests
We do not intentionally collect special category personal data unless required as part of a specific contracted service.
How We Obtain Personal Data
We collect personal data from several sources including:
Directly from You
When you:
- Contact us
- Register for cybersecurity services
- Request information
- Participate in certification or assessment activities
From Organisations
Your organisation, partner organisations or Managed Service Providers may provide your contact details when engaging us to deliver services.
Public Sources
We may obtain business contact details from publicly available sources such as:
- Company websites
- Professional profiles
- Social media
- Industry directories
- Professional recommendations
This information is used solely for legitimate business communication relating to cybersecurity services.
Lawful Basis for Processing
Under UK GDPR we process personal data under the following lawful bases:
Contract
Where processing is necessary to deliver contracted cybersecurity services, assessments or certifications.
Legitimate Interests
Where processing is necessary for our legitimate business interests, including:
- Communicating about cybersecurity services
- Managing relationships with organisations and partners
- Delivering certification services
- Improving our services
- We ensure these interests do not override your rights and freedoms.
Legal Obligation
Where processing is required to comply with regulatory or legal requirements.
How We Use Personal Data
We use personal data to:
- Deliver cybersecurity certification and assurance services
- Manage certification and assessment processes
- Communicate regarding services and service delivery
- Maintain certification records
- Respond to enquiries
- Manage client and partner relationships
- Improve our services
Sharing Personal Data
Where necessary to deliver services we may share data with:
Certification Authorities
Including IASME and other certification bodies where required for certification processing.
Service Partners
Including:
- Managed Service Providers
- Partner certification bodies
- Clients of partners where services are delivered jointly
- Service Providers
Including technology providers and professional advisors that support our operations.
Where services include cybersecurity insurance options, relevant business details may be shared with an insurance broker for policy setup.
All sharing is performed under appropriate contractual and security safeguards.
Data Storage and Security
Cyber Tec Security implements appropriate technical and organisational measures to protect personal data, including:
- Secure systems and infrastructure
- Encrypted communications (SSL/TLS)
- Access controls
- Security monitoring and auditing
As a cybersecurity services provider, protecting data security is a core operational requirement.
Data Retention
Where certification services are provided:
- Certification and assessment data may be retained by IASME for 18 months, after which it may be anonymised for statistical analysis.
- Cyber Tec Security retains relevant certification and service delivery data for up to 7 years, unless longer retention is required for legal or regulatory purposes.
We retain personal data only as long as necessary to fulfil the purposes for which it was collected.
Your Data Protection Rights
Under UK GDPR you have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request erasure of personal data where appropriate
- Restrict processing
- Object to processing based on legitimate interests
- Request data portability where applicable
To exercise these rights please email: [email protected]
Please include the subject line “Data Protection Enquiry”.
We may request proof of identity before responding to certain requests.
Complaints
If you are unhappy with how we handle your personal data you have the right to lodge a complaint with the UK supervisory authority:
Information Commissioner’s Office (ICO) https://ico.org.uk
We encourage you to contact us first so we can try to resolve the matter.
External Websites
Our website may contain links to other websites.
Once you leave our website we have no control over those websites and cannot be responsible for the protection of any information you provide to them.
You should review the privacy policies of those websites separately.
Cookies
Our website uses cookies to improve user experience and functionality.
Cookies are small text files placed on your device when visiting websites.
We use cookies to:
- Enable website functionality
- Improve website performance
- Understand website usage
Cookies may include:
Session Cookies
Temporary cookies which are deleted when you close your browser.
Persistent Cookies
Cookies stored on your device to remember preferences and website usage.
Any information collected through cookies is used only for website operation and improvement.
You can control or disable cookies through your browser settings.
Changes to This Privacy Notice
We may update this Privacy Notice from time to time.
The most recent version will always be available on our website.
Before accepting or declining cookies
messagesUtk
This cookie is used to recognize visitors who chat with you via the messages tool. If the visitor leaves your site before they’re added as a contact, they will have this cookie associated with their browser. If you chat with a visitor who later returns to your site in the same cookied browser, the messages tool will load their conversation history.
(Expires: 13 months)
Cookie Information
After accepting cookies
__hs_opt_out
This cookie is used by the opt-in privacy policy to remember not to ask the visitor to accept cookies again. This cookie is set when you give visitors the choice to opt out of cookies.
(Expires: 13 months)
messagesUtk
This cookie is used to recognize visitors who chat with you via the messages tool. If the visitor leaves your site before they’re added as a contact, they will have this cookie associated with their browser. If you chat with a visitor who later returns to your site in the same cookied browser, the messages tool will load their conversation history.
(Expires: 13 months)
__hssc
This cookie keeps track of sessions. This is used to determine if HubSpot should increment the session number and timestamps in the __hstc cookie. It contains the domain, viewCount (increments each pageView in a session), and session start timestamp.
(Expires: 30 min)
__hssrc
Whenever HubSpot changes the session cookie, this cookie is also set to determine if the visitor has restarted their browser. If this cookie does not exist when HubSpot manages cookies, it is considered a new session.
(Expires: end of session)
__hstc
The main cookie for tracking visitors. It contains the domain, utk, initial timestamp (first visit), last timestamp (last visit), current timestamp (this visit), and session number (increments for each subsequent session).
(Expires: 13 months)
hubspotutk
This cookie is used to keep track of a visitor’s identity. This cookie is passed to HubSpot on form submission and used when deduplicating contacts.
(Expires: 13 months)
After declining cookies
__hs_opt_out
This cookie is used by the opt-in privacy policy to remember not to ask the visitor to accept cookies again. This cookie is set when you give visitors the choice to opt out of cookies.
(Expires: 13 months)
messagesUtk
This cookie is used to recognize visitors who chat with you via the messages tool. If the visitor leaves your site before they’re added as a contact, they will have this cookie associated with their browser. If you chat with a visitor who later returns to your site in the same cookied browser, the messages tool will load their conversation history.
(Expires: 13 months)
Frequently Asked Questions
We require this information to understand your needs and provide you with a better service, and for the following reasons:
- Internal record keeping.
- To analyse the use of the Cyber Tec Security website.
- We may use the information to improve our products and services.
- Our representatives may follow up, either by e-mail, phone or mail, to people who have contacted us and entered their details through our website.
- From time to time, we may also use your information to contact you for market research purposes.
This data is retained for 18 months, when it is anonymised and used for statistical analysis.
We may contact you by e-mail, phone or mail.
If you wish to unsubscribe from email communications from Cyber Tec Security you can do so by clicking on the unsubscribe link at the bottom of any newsletter or marketing email received, or else, contact a member of our team who will be happy to assist you.
Email: [email protected]
Tel: 0117 457 3331
Or use the online contact us form.
Most web browsers allow you to control cookies through your browser settings. You can check how to manage cookies by clicking on the link below which relates to your browser:
Microsoft Internet Explorer – https://support.microsoft.com/en-gb/help/17442/windows-internet-explorer-delete-manage-cookies
- In Internet Explorer, select the Tools (the Gear icon) button, point to Safety, and then select Delete browsing history.
- Select the Cookies and website data check box, and then select Delete.
Google Chrome –
https://support.google.com/accounts/answer/32050?co=GENIE.Platform%3DDesktop&hl=en
- On your computer, open Chrome.
- At the top right, click More (3 dots).
- Click More tools and then Clear browsing data.
- At the top, choose a time range. To delete everything, select All time.
- Next to “Cookies and other site data” and “Cached images and files,” check the boxes.
- Click Clear data.
If your web browser is not detailed above or you are using a mobile device, please consult your user manual or online help guide for details on how to control cookies. To find out more about cookies and how to manage them, you may wish to visit www.allaboutcookies.org.
Please remember that all of the links above are third party websites. We do not endorse them and are not responsible for their contents.
-
- View images.
- Add items to your basket or buy them.
- See other customers’ reviews or write reviews.