Privacy Policy
At CipherShield, we respect your privacy and are committed to protecting your personal information. This Privacy Policy outlines how we collect, use, share, and secure the information you provide to us.
In this Privacy Policy we, us or our means CipherShield Pty Ltd (ABN 56 675 235 042).
Introduction
We respect your privacy and are committed to protecting your personal information. This Privacy Policy explains what we collect, how we use and share it, and the steps we take to keep it secure. It applies to our website, associated applications, and social media pages (together, the Site) and to our cybersecurity consulting services in Australia and abroad.
The information we collect
- Contact details: name, email address, phone number, company and role.
- Technical data: IP address, device and browser information, pages viewed and interactions with the Site.
- Service information: details you provide during consultations and engagements (e.g., scope notes, assessment findings, audit evidence).
- Recruitment information: CV/resume, qualifications, and interview notes if you apply for a role.
We do not collect financial information (e.g., payment card details) for our services.
How we collect information
- Directly from you: when you complete forms, contact us, subscribe, or work with us.
- Automatically: via cookies and similar technologies when you use the Site.
- From third parties: for example, referees (recruitment), service partners, or publicly available sources where permitted.
Why we use your information
We use personal information to:
- provide, operate, and improve the Site and our services.
- communicate with you and respond to enquiries.
- maintain records, manage accounts, and administer engagements.
- perform analytics, market research, and business development.
- send service updates and marketing (you can opt out at any time).
- run promotions or events you choose to join.
- consider employment applications; and
- meet legal obligations, resolve disputes, and enforce agreements.
Marketing
We may send you information about our services that we think may interest you. You can opt out at any time using the unsubscribe link or by emailing [email protected].
When we share information
We only share personal information:
- with service providers and subcontractors who help deliver our services (under confidentiality and security obligations).
- with third parties where required by law, regulation, or court order; or
- with your consent or at your direction.
We do not sell personal information.
International transfers
Some service providers may be located outside Australia. Where we transfer personal information overseas, we take reasonable steps to ensure it is handled in accordance with this Policy and applicable law.
Security
We use industry-standard safeguards (including access controls, encryption in transit where appropriate, monitoring, and staff training) to protect personal information. If a data breach is likely to cause serious harm, we will notify affected individuals and regulators as required.
Retention
We keep personal information only for as long as needed for the purposes described above, to comply with legal and contractual requirements, or as otherwise permitted by law. When no longer required, we take reasonable steps to de-identify or securely destroy it.
Cookies and analytics
We use cookies and similar technologies to make the Site work and to understand usage.
- Essential cookies: required for core features (e.g., secure login).
- Functional cookies: remember preferences (e.g., language, region).
- Performance/analytics cookies: help us measure traffic and improve content and campaigns.
- Advertising/retargeting cookies: may show advertising we consider relevant to you.
We may also use third-party analytics tools that collect usage data sent by your browser or device. We may derive aggregate statistics from personal information, but aggregated data does not identify you.
How to manage cookies
Most browsers allow you to refuse or delete cookies. If you disable essential cookies, some features of the Site may not function properly. For more on cookies, visit allaboutcookies.org.
Your privacy rights
Depending on applicable laws, you may have rights to:
Choice and consent: Please read this Privacy Policy carefully. By providing Personal Information to us, you consent to us collecting, holding, using, and disclosing your Personal Information in accordance with this Privacy Policy and any other arrangements that apply between us.
You do not have to provide Personal Information to us, however, if you do not, it may affect your use of this Site or the products and/or services offered on or through it.
CipherShield does not intentionally collect personal information from children. Individuals over 16 years old can consent to the processing of personal information; anyone younger than 16 requires the consent of their parent or guardian.
- Access: You may request details of the Personal Information that we hold about you. We may charge you a small fee for this service. If so, we will inform you of the fee before processing your request. In certain circumstances (for example, including those set out in Australia’s Privacy Act 1988 (Cth)), we may refuse to provide you with Personal Information that we hold about you.
- Erasure: You have the right to request that CipherShield erase your personal data, under certain conditions.
- Correction: If you believe that any information, we hold about you is inaccurate, out of date, incomplete, irrelevant, or misleading, please contact us using the details below. We will take reasonable steps to correct any information found to be inaccurate, incomplete, misleading, or out of date.
- Information from third parties: If we receive Personal Information about you from a third party, we will protect it as set out in this Privacy Policy. If you are a third party providing Personal Information about somebody else, you represent and warrant that you have such person’s consent to provide the Personal Information to us.
- Restrict processing: You have the right to restrict processing of your personal information, under certain conditions. If we receive Personal Information about you from a third party, we will protect it as set out in this Privacy Policy. If you are a third party providing Personal Information about somebody else, you represent and warrant that you have such person’s consent to provide the Personal Information to us.
- Object to processing: You have the right to object to CipherShield processing of your personal data, under certain conditions.
- Data portability: You have the right to request that CipherShield transfer the data we have collected to another organisation, or directly to you, under certain conditions.
We may charge a reasonable fee for access where permitted by law and will tell you in advance if that applies. In some cases, we may refuse a request in line with legal exceptions (we’ll explain why if we do).
To exercise your rights, contact [email protected]. We aim to respond within 30 days.
Children’s privacy
Our services are not directed to children. We do not knowingly collect personal information from individuals under 16. If you believe a child has provided us with personal information, please contact us so we can delete it.
Third-party links
Our Site may contain links to third-party websites or services. We are not responsible for their privacy practices—please review their policies.
Changes to this Policy
We may update this Policy from time to time. The updated version will be posted on the Site with a revised “Last updated” date. Your continued use of the Site after an update means you accept the changes.
Contact us
Questions or requests? Email [email protected]
This Privacy Policy was last reviewed and updated on 1st November 2025.