Home

Privacy Policy

1. Privacy Policy 

Effective Date:

Last Updated: 

SENSETI (“we”, “us”, “our”, or “Company”) is an international IT consulting and cybersecurity company acting as a data controller in accordance with applicable data protection laws. This Privacy Policy explains how we collect, use, store, disclose, and protect personal information when you visit our website, interact with us, or use our services. It applies to website visitors, clients, partners, prospects, and any individuals whose data we process in the course of providing IT consulting, infrastructure, cloud, and cybersecurity services. This Policy should be read together with our Cookie Policy, which explains how we use cookies and similar technologies.

2. Information We Collect

We collect different types of information depending on how you interact with SENSETI — whether you are visiting our website, contacting us, becoming a client, or working with us on projects.

2.1 Personal Information

We may collect personal and business-related information that you voluntarily provide to us, including your full name, business email address, phone number, job title, company name, and country of residence. When you contact us through forms, email, or other channels, we also collect the content of your messages, inquiries, feedback, and any attachments you choose to share.

If you become a client or partner, we may additionally collect billing details, contractual information, and payment-related data, which is processed securely and only for legitimate business purposes. We do not collect more data than necessary and always limit collection to what is relevant for communication, service delivery, and legal compliance.

2.2 Technical & Usage Information

When you visit our website, we automatically collect certain technical information, including IP address, browser type and version, operating system, device type, screen resolution, and language settings. We also collect usage data such as pages visited, time spent on pages, navigation paths, referring and exit pages, and interaction with website elements.

This data helps us understand how users interact with our website, improve performance, enhance user experience, and maintain security. We collect part of this information through cookies and similar technologies. For full details, please refer to our Cookie Policy.

2.3 Information from Third-Party Sources

We may receive information about you from third-party sources such as social media platforms (e.g. LinkedIn), business partners, marketing platforms, event organizers, public business directories, and analytics providers. This may include professional profile data, company affiliation, business interests, and engagement information.

We only use such data in accordance with applicable laws and the privacy settings you have chosen on those platforms. We do not purchase personal data and do not use third-party data for intrusive profiling.

2.4 Client IT Infrastructure & Technical Data

When providing IT consulting, cybersecurity, cloud, and infrastructure services, we may process technical data related to our clients’ systems and environments. This may include system logs, network configurations, security events, performance metrics, vulnerability data, cloud architecture information, and audit results.

This data is accessed strictly for the purpose of delivering contracted services, improving security posture, performing assessments, implementing solutions, and supporting operations. Such information is treated as confidential, protected by contractual obligations, and handled with the highest security standards.

3. How We Collect Information

We collect information through several channels. First, directly from you when you fill out forms on our website, contact us by email or phone, request a consultation, subscribe to updates, or engage with us in business communication. Second, automatically through cookies, server logs, analytics tools, and security monitoring systems when you visit our website. Third, from third parties such as business partners, social platforms, public sources, and service providers, in accordance with their privacy policies and applicable laws. We always aim to collect data in a transparent and lawful manner.

4. How We Use Information

4.1 Service Delivery

To provide IT consulting, cybersecurity, infrastructure, cloud, and managed services, perform audits, implement solutions, deliver reports, and support ongoing operations.

4.2 Business Operations

To manage contracts, invoices, accounts, internal processes, client relationships, and project administration.

4.3 Marketing & Communication

To send newsletters, service updates, event invitations, and industry insights. You can unsubscribe at any time using the link in our emails.

4.4 Website Analytics & Improvement

To analyze user behavior, improve website performance, optimize user experience, and enhance content relevance.

4.5 Legal & Security

To prevent fraud, ensure information security, protect our rights, comply with legal obligations, and respond to lawful requests.

5. Legal Bases for Processing (GDPR)

If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, we process your personal data only when we have a valid legal basis. This includes:

  • Consent – where you have given clear permission for specific processing activities, such as marketing communications.
  • Contractual necessity – where processing is required to perform a contract with you or take steps at your request before entering into a contract.
  • Legitimate interest – where processing is necessary for our business interests, such as improving services, ensuring security, preventing fraud, and developing our offerings, provided these interests are not overridden by your rights.
  • Legal obligation – where processing is required to comply with applicable laws and regulations.

You have the right to withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing carried out before consent was withdrawn. When relying on legitimate interests, we always balance our business needs against your rights and expectations.

6. How We Share Information

We do not sell your personal information. We only share it when necessary, and always with appropriate safeguards in place:

6.1 Service Providers

We may share your data with trusted third parties who support our business operations. This includes hosting providers, website analytics services, communication platforms, cloud storage vendors, CRM systems, email delivery tools, and IT security services. These providers are contractually obligated to protect your data and act only on our instructions.

6.2 Legal Requirements

We may disclose your information if required to comply with applicable laws, regulations, court orders, or lawful requests from authorities, including law enforcement or regulatory bodies.

6.3 Business Transfers

In the event of a merger, acquisition, restructuring, or sale of assets, personal data may be transferred as part of the business transaction. In such cases, we will ensure the continued protection of your information.

6.4 With Your Consent

We may share your information with third parties when you have explicitly consented to such sharing — for example, through event signups or integration with external platforms.

6.5 Aggregated or Anonymized Data

We may use and share aggregated or anonymized information (which cannot be used to identify you) for benchmarking, research, analytics, or marketing purposes.

7. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience on our website, analyze site traffic, remember your preferences, and support marketing efforts. These may include essential, performance, functionality, and marketing cookies.

For full details on the types of cookies we use, how long they last, and how to manage your preferences, please refer to our Cookie Policy. You can modify your cookie settings at any time via your browser or our cookie banner.

8. Data Security

We take data protection seriously and implement robust technical and organizational measures to safeguard your personal information. These include:

  • Encryption of data in transit (SSL/TLS) and at rest
  • Access controls, role-based permissions, and multi-factor authentication (MFA)
  • Activity logging and audit trails for sensitive systems
  • Regular penetration testing and vulnerability scanning
  • Staff training on cybersecurity awareness and data handling best practices

While we strive to use industry-standard protections, no system or method of transmission over the internet is entirely secure. We cannot guarantee absolute security, but we continuously monitor and improve our safeguards.

9. Data Retention

We retain your personal data only as long as necessary to fulfill the purposes outlined in this Privacy Policy or to comply with legal, regulatory, or contractual requirements.

  • Client and project data may be retained for the duration of our engagement and a reasonable period thereafter to support legal or operational needs.
  • Marketing and communication data is retained until you unsubscribe or request deletion.
  • Usage logs and analytics data may be stored for up to 24 months.
  • Billing and transaction data may be stored for 7–10 years to meet accounting and tax regulations.

Once no longer needed, we securely delete or anonymize your data using industry best practices.

10. Your Rights

Depending on your location, you may have certain rights under data protection laws regarding your personal information.

All Users (General Rights):

  • Access: You can request a copy of the personal data we hold about you.
  • Correction: You may request to update or correct inaccurate or incomplete data.
  • Deletion: You can request the deletion of your data, subject to legal exceptions.
  • Restriction: You can ask us to limit how we use your data.
  • Objection: You can object to data processing based on our legitimate interests.
  • Portability: You can request to receive your data in a machine-readable format.

EU/UK Users (GDPR/UK GDPR):

  • Withdraw consent: Where we rely on your consent, you may withdraw it at any time.
  • File a complaint: You have the right to lodge a complaint with your local data protection authority.

California Users (CCPA/CPRA):

  • Right to know what personal data we collect, use, share, or sell
  • Right to delete your personal data
  • Right to opt out of the sale or sharing of your data (we do not sell personal data)
  • Right to non-discrimination for exercising your rights

To exercise any of these rights, please contact us at privacy@senseti.com. We may need to verify your identity before processing your request. Responses will be provided within the timeframes required by law.

11. International Data Transfers

SENSETI may store and process your personal information in countries outside your country of residence, including in the European Union, the United Kingdom, and the United States. Where data is transferred internationally, we implement appropriate safeguards to ensure an adequate level of protection.

These safeguards may include:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequacy decisions recognizing equivalent data protection laws
  • User consent for specific transfers, where applicable

We take steps to ensure your information remains protected regardless of where it is processed, in accordance with applicable data protection laws.

12. Children’s Privacy

Our Website and services are not directed to children under the age of 16. We do not knowingly collect personal data from individuals under 16. If we become aware that we have collected information from a child without verified parental consent, we will take immediate steps to delete that data. If you believe we may have collected such information, please contact us.

13. Third-Party Links and Services

Our Website may contain links to third-party websites, applications, or services. These are provided for your convenience but are not operated or controlled by SENSETI. We are not responsible for the privacy practices or content of such third parties and encourage you to review their privacy policies before sharing personal information.

14. Updates to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, or legal obligations. The “Last Updated” date at the top of this page indicates when the latest changes were made. If material updates are made, we will notify you through our Website, email, or other appropriate means. We encourage you to review this policy periodically.

15. Contact Us

If you have any questions, concerns, or requests related to this Privacy Policy or your personal data, please contact us: