Business Domain Specific Least Cybersecurity Controls Implementation (BDSLCCI) - Privacy Policy
BDSLCCI Personal Information Privacy Policy
Business Domain Specific Least Cybersecurity Controls Implementation (BDSLCCI) is dedicated to safeguarding your privacy and creating technologies that will provide you the most effective and secure online experience since it understands how important it is to keep your privacy. The BDSLCCI Web Portals' data collection and use are governed by this Statement of Privacy, which is applicable to all current and former users. You provide your permission to the data practices outlined in this statement by using the BDSLCCI Web Portal. BDSLCCI is one of the key service of SecureClaw Incorporation (“SecureClaw”), and /or its affiliates or subsidiaries, provide web portal features (“BDSLCCI Web Portal”) and other products and services to you when you visit or shop at BDSLCCI, use BDSLCCI products or services, use BDSLCCI applications, or use software provided by BDSLCCI in connection with any of the foregoing (collectively, "BDSLCCI Services”). The security and privacy of our clients, respondents, and site users are our top priorities at BDSLCCI. We respect your right to privacy and value your confidence in us.
BDSLCCI gathers specific personal data about you as part of our interaction with you. BDSLCCI, through various web-platforms that help our
members to register, reset passwords, get training, partner with us, etc. collects personally identifiable information/personal information that may
include:
Contact information
We might collect your name, e-mail, home or work addresses, telephone numbers, organization names, etc.
Payment and billing information
In accordance with your chosen payment method and the legal age allowed by your place of origin/residence, we may collect your billing name, billing address, and billing information. On our Web Portal, we NEVER gather your credit card number, expiration date, or any additional data related to your credit card. We won't keep any Bank-related information on file, and none of our employees won't have access to it either.
Information you post
We collect information you post in a public space on our Web Portal or on a third-party social media page of BDSLCCI.
Demographic information
We may collect anonymous demographic information that is not unique to you, such as your ZIP code, age, gender, preferences, interests, favorites, or any other information provided by you during the use of our Web Portal. We might collect this as part of a survey as well.
Other information
We might record information about your IP address and the browser you're using if you visit our web portal. In addition, interactions through our web portal, training facilities, encounters with our representatives, those of our authorized partners, and those of other third parties, as well as the amount of time spent on our web portal, may be included. Without your explicit consent, BDSLCCI will not collect, use, or disclose sensitive personal information about you, such as your race, religion, health, or political affiliations.
Young children's privacy needs to be protected in particular. Except with the specific approval of a parent or guardian, we do not automatically process or profile any information pertaining to children. According to our Terms of Use, which are available here, any individual under the age of majority may only use our services while under surveillance by their parents or other legal guardians. We shall make reasonable attempts to identify any personal information that we may have obtained from a minor without that minor's parent's consent if we become aware of it. Please get in touch with us at legal@BDSLCCI.com if you suspect that we may have any personal information from or about a person who is not of legal age.
We collect information in different ways.
Direct information from you is what we gather. When you register with us or become a partner with us, we immediately gather information from you. You may decide to fill out forms and provide personal information in order to apply for specialized information or services on subjects like products, training, white papers, brochures, etc. Regardless of your membership, this information is available. BDSLCCI requests that you consent to having BDSLCCI representatives contact you for the aforementioned reason. Depending on how you use BDSLCCI services, BDSLCCI may gather various data from or about you. We gather any information you voluntarily give us when you open an account and use our services, whether directly or through a third-party platform. This data may include, but is not limited to, data regarding your accounts with other services.
We passively gather data from you. Every time you connect with us, we automatically receive and retain a particular type of information. For the purpose of tracking how you use our Web Portal or any of our subdomains, as well as the adverts and other content that is presented by or on behalf of BDSLCCI on other Web Portals, we utilize browser cookies and web beacons. We might make use of this data for internal research as well as to deliver you location-based services like advertising, search results, and other tailored content. If your computer has such capabilities, we frequently receive a confirmation when you open email from BDSLCCI. This helps us make our email correspondence more useful and entertaining. If you do not want to receive e-mail or other mail from us, please edit your customer communication preferences.
We receive information about you from outside sources. The collection, use, and sharing of your data will also be governed by the privacy policies and other agreements of that third party if you access or use our Services via a third-party platform or service, use a social media feature that is integrated into our web portals, or click on any third-party links.
If your social media or other online accounts are linked to your BDSLCCI account, we may be able to access certain information through them. If you log in to BDSLCCI using a social network account, such as Facebook, or join a WhatsApp group sponsored by BDSLCCI, or any other third-party platform or service, we will need your consent to access certain data from that account. The third-party social networking platform might provide us with specific details about you. We may gather information about you, such as your name, profile image, membership account ID, login email address, location, the physical location of your access devices, gender, birthday, and list of friends or contacts, depending on the platform or service. Through their APIs, those platforms and services provide us with information. The information we get is determined by the information that you choose to give us (via your privacy settings) or by the platform or service.
We get information about you from other sources. We might receive information about you from other sources and add it to our account information.
We use information to provide you our Services: Certain BDSLCCI services require you to provide your personal information, so as to enable us to
provide you the whole range of that Service.
We use information to contact/respond to your requests or questions: We might use the information you provide to contact you to deliver the services
you have requested or administering and processing your certification exams.
We use information to improve our products and services: We might use your information to analyze and customize our products, Web Portals,
newsletters, and other communications to support and improve your online experience with us.
We use information to look at site trends and customer interests: We may use your information to make our Web Portal and products better. We may
combine information we get from you with information about you we get from third parties. BDSLCCI may also contact you via surveys to conduct
research about your opinion of current services or of potential new services that may be offered.
We use information for security purposes: We may use information to protect our company, our customers, or our Web Portals.
We use information for marketing purposes: We may use your information for sending communications to you, including for marketing and
promotional or customer satisfaction purposes to inform you of other products or services available from BDSLCCI and its affiliates.
We use information to send you transactional communications: We might send you emails or SMS about your account or a product or service
purchase.
We use information as otherwise permitted by law: To comply with our obligations under the law, including record-keeping, reporting, accounting, tax,
etc.
BDSLCCI does not sell, rent, or lease your personal information to third parties without your explicit consent.
BDSLCCI shares personal information in the following ways:
We will share your personal information with our Group companies for internal reasons, primarily for business and operational purposes.
We will share information with our authorised Vendors. We share information with vendors who help us to manage our online registration
process or payment processors or transactional message processors. Some vendors may be located outside of the country where you reside in.
We will share information with our business partners and/or third parties who perform services on our behalf. BDSLCCI may, from time to time, contact you on behalf of external business partners about a particular offering that may be of interest to you. In those cases, your unique personal information (for instance, your e-mail, name, address, or telephone number) is not transferred to a third party. However, BDSLCCI may share data with trusted partners to help us perform statistical analysis, send you email or postal mail, provide customer support, or arrange for deliveries. All such partners are prohibited from using your personal information except to provide these services to BDSLCCI, and they are required to maintain the confidentiality of your information.
We may share information if we think we must comply with the law or to protect ourselves. BDSLCCI Web Portals will disclose your personal
information, without consent, only if required to do so by law or in the good faith belief that such action is necessary to: (a) conform to the
edicts of the law or comply with legal process served on BDSLCCI or the site; (b) protect and defend the rights or property of BDSLCCI; and,
(c) act under exigent circumstances to protect the personal safety of users of BDSLCCI or the public.
We may share your information for reasons not described in this policy. We will tell you before we do this. BDSLCCI does not transfer any
sensitive personal information. By using or continuing to use the site you agree to our use of your information (including sensitive personal
information) in accordance with this Privacy Notice, as may be amended from time to time by BDSLCCI at its discretion. You also agree and
consent to us collecting, storing, processing, transferring, and sharing information (including sensitive personal information) related to you with
third parties or service providers for the purposes as set out in this Privacy Notice.
Conduct or forward surveys, contests, pyramid schemes
or chain letters.
We may be required to share the aforementioned information with government authorities and agencies for the purposes of verification of identity or
for the prevention, detection, investigation, prosecution, or punishment of cyber incidents or any other legal offenses. You agree and consent to BDSLCCI, at its sole discretion, disclosing the required information with government authorities and agencies in such cases.
BDSLCCI encourages you to review the privacy statements of Web Portals you choose to link to from BDSLCCI’s Web Portal so that you can understand
how those Web Portals collect, use, and share your information. BDSLCCI is not responsible for the privacy statements or content on Web Portals outside of
the BDSLCCI’s family of Web Portals.
BDSLCCI stores your personally identifiable information such as name, email address, contact number, etc. on a secure server which is encrypted and
is accessible only to BDSLCCI’s applications. BDSLCCI may be required to share personal information with its affiliates, advisors, and auditors in
other countries where it may be processed. If we or our affiliates or our service providers transfer personal information outside of the country of origin,
we always require that appropriate safeguards are in place to protect the information when it is processed.
We take appropriate technical and organizational measures to secure your information and to protect it against unauthorized or unlawful use and
accidental loss or destruction.
BDSLCCI uses secure servers to store your information and only shares and provides access to your information to the minimum extent necessary,
subjected to confidentiality restrictions where appropriate, and on an anonymized basis wherever possible. We also verify the identity of any individual
who requests access to information prior to granting them access to requested information.
BDSLCCI also uses Secure Sockets Layer (SSL) software or other similar encryption technologies to encrypt any payment transactions you make on
or via our Web Portal. BDSLCCI also adopts comprehensive informationa security and cybersecurity standards for selected Services.
We will retain your personal information as needed to fulfill the purposes for which it was collected. We will retain and use your personal information as
necessary to comply with our business requirements, legal obligations, resolve disputes, protect our assets, and enforce our agreements.
We determine standard retention periods for different categories of personal information in our possession. Where it isn’t possible to determine
standard retention periods, we do so, based on the following criteria:
our relationship with you.
the legal obligations we are subject to.
the legal basis we have for processing your data (consent, performance of contract, etc.).
the purposes and uses of your data (this include present and future uses).
the level of risk with retaining or using your data.
your rights under the GDPR and other relevant laws.
any other relevant circumstances.
As BDSLCCI is a certification body, we store users’ information relevant to the upgrading or renewing their certification which includes submission of
CPC Credits in line with the certification CPC policy.
We process your personal information on the following legal bases:
Consent
When you express interest in associating with us or discovering more about us, when you give your approval to receive marketing communications, etc., we use your consent to process your data for those specific reasons. You may revoke your consent at any time by sending an email to the addresses shown below.
Performance of Contract
To perform the contract between us, we process various types of contact/financial/service-related information. This also enables us to provide you
with our products and/or services in line with the contractual obligations of our contract along with our Terms of Use via the BDSLCCI Web Portal.
Legitimate Interests
We may use your personal information for our legitimate interests, which include compliance with applicable laws, direct marketing, market research, web analytics/profiling, customer service, record-keeping, review, research, and analysis, to fulfill our legal obligations, security, storage, etc. As long as such processing does not exceed your rights and freedoms. You have the right to object at any time to the processing of your personal data that is based on legitimate interests, on the basis of factors specific to your circumstances. This Privacy Statement's "Right to Object" provision provides more details about this right, including how to exercise it.
A cookie is a small informational text file that is downloaded and stored on your computer or mobile device when you visit our online portal. Cookies are used to record particular data about your references, location, session details, and other user activity in addition to tracking user actions and activities. On this web portal, we use these cookies and/or related technologies just to make sure you get the best possible experience. You can always remove the cookies related to any Web Portal by going to your browser's preferences or content settings.
BDSLCCI collects, records, and may analyze information from visitors to our Web Portals. We may record your IP address and use cookies. Furthermore,
BDSLCCI collects and processes any personal data that you volunteer to share with us via our Web Portal forms, such as when you register for events or
sign up for information and newsletters. This data is used to deliver customized content and advertising within BDSLCCI to customers whose
behavior indicates that they are interested in a subject area. If you provide BDSLCCI with your social media details, BDSLCCI will retrieve publicly
available information about you from social media.
In most cases we will need your consent to use cookies on this Web Portal. The exceptions are where the cookie is essential for us to provide you with
service you have requested, or essential to the inherent functionality of the Web Portal. Where we wish to use cookies that require your consent you will be
asked to consent through a checkbox pop-upon the Web Portal homepage that you will have to answer to gain full access to the Web Portal.
Rejecting cookies may restrict your browsing experience on BDSLCCI Web Portals related to important features such as login, location-specific data, and
other demographic dependent information. However, you will be provided with an opportunity to opt-out of the use of cookies while consenting by
controlling the collection of cookies in the cookie settings provided on the cookie banner.
BDSLCCI does not share cookie information with any other website, nor do we sell this data to any third party. We work with third party suppliers who
may also set cookies on our web portal. By consenting to the use of cookies on our site you will be consenting to the use of these cookies.
The General Data Protection Regulation (GDPR) provides you the benefit of several rights when it comes to your personal information.
The Right to be Informed
BDSLCCI is publishing this Privacy Policy Statement to keep our users informed as to what we do with their personal information and what are their
rights, in a clear, transparent, and easily understandable manner.
The Right of Access
You have the right to obtain access to your information that we are processing and certain other information, in accordance with data protection law.
Contact BDSLCCI if you wish to access the personal information BDSLCCI holds about users/data subjects.
The Right to Rectification
You are entitled to have your information corrected if it’s inaccurate or incomplete.
The Right to Erasure
This is also known as ‘the right to be forgotten’. If users want BDSLCCI to erase all personal data and we do not have a legal reason to continue to
process and hold it, please contact us at legal@BDSLCCI.com. This is not a general right to erasure; there are exceptions. If
however, you do not fall within the ambit of exceptions, we will delete your data within a period of thirty (30) days.
The Right to Restrict Processing
You have rights to ‘block’ or suppress further use of your information. Users have the right to ask BDSLCCI to restrict how we process user data. This
means we are permitted to store the data but not further process it. We keep just enough data to make sure we respect our users request in the future.
The Right to Data Portability
BDSLCCI allows to obtain and reuse personal data for purposes across services in a safe and secure way without this effecting the usability of user
data.
The Right to Withdraw Consent
If users have given us their consent to process their data but change their mind later, they have the right to withdraw their consent at any time, and BDSLCCI stop processing their data. Users can write to legal@BDSLCCI.com
The Right to Object to Processing and Automated Processing
You have right to object to the processing and automated profiling of your personal information as per applicable data protection laws. If you wish to
object to the processing or automated processing of your personal information, please contact us at legal@BDSLCCI.com
Further information and advice about your rights can be obtained from the data protection regulator in your country.
In accordance with the applicable data privacy laws and rules of the jurisdictions in which BDSLCCI operates, including General Data Protection
Regulation (EU) 2016/679 (GDPR), the contact details of the appointed Data Protection Officer are provided below:
We will retain your personal information as needed to fulfill the purposes for which it was collected. We will retain and use your personal information as
necessary to comply with our business requirements, legal obligations, resolve disputes, protect our assets, and enforce our agreements.
We determine standard retention periods for different categories of personal information in our possession.
Where it isn’t possible to determine standard retention periods, we do so, based on the following criteria:
DPO Email: legal@BDSLCCI.com
If you have any questions about this Policy or other privacy concerns, you can also email us at the abovementioned details.
Users may unsubscribe from our marketing communications by clicking on the “unsubscribe” link located on the bottom of our e-mails, and by
sending us email at legal@BDSLCCI.com. Customers cannot opt out of receiving automated
emails related to their account with us or our Services, like aspen emails, certification renewal emails.
If you would like to opt-out of sharing of your personally identifiable information/personal information submitted on our Web Portal with third
parties or otherwise, contact us at legal@BDSLCCI.com and indicate your unwillingness to share such information with third parties or otherwise.
However, this shall restrict your access to certain services as our services are linked internally to various platforms.
However, under the following circumstances, we may still be required to share your personal information:
BDSLCCI does not sell, rent, or lease your personal information to third parties without your explicit consent.
BDSLCCI shares personal information in the following ways:
If we are responding to court orders or legal process, or if we need to establish or exercise our legal rights or defend against legal claims.
If we believe it is necessary to share information to investigate, prevent or take action regarding illegal activities, suspected fraud, situations
involving potential threats to the physical safety of any person, violations of our Terms of Use or as otherwise required by law.
If we believe it is necessary to restrict or inhibit any user from using any of our Web Portals, including, without limitation, by means of “hacking”
or defacing any portion thereof.
If you click on one of the links to third party websites, you may be taken to websites we do not control. This policy does not apply to the privacy
practices of those websites. Read the privacy policy of other websites carefully. We are not responsible for these third-party sites.
BDSLCCI reserves the right to terminate or suspend any account or delete certain contents from any profile or public domain within the ambit of this
website if the said account or content is found to be in violation of our Privacy Policy Statement. We request you to respect privacy and secrecy
concerns of others. The jurisdiction of any breach or dispute shall be determined in accordance with the terms of use of the website.
BDSLCCI does not accept any reservation or any type of limited acceptance of our Privacy Policy Statement. You expressly agree to each, and every
term and condition as stipulated in this Policy Statement without any exception whatsoever.
This Privacy Policy Statement constitutes a part of Terms of Use and Terms of Service appearing on BDSLCCI’s family of websites. We have taken
utmost care to avoid any inconsistency or conflict of this policy with any other terms, agreements, or guidelines available on our family of websites. In
case there exists a conflict, we request you to kindly contact us at legal@BDSLCCI.com for the final provision and interpretation.
BDSLCCI welcomes your comments regarding this Privacy Policy Statement. If you believe that BDSLCCI has not adhered to this Privacy Policy
Statement, please contact BDSLCCI at legal@BDSLCCI.com. We will use commercially reasonable efforts to promptly determine
and remedy the problem. We usually act on requests and provide information free of charge but may charge a reasonable fee to cover our
administrative costs of providing the information for, baseless or excessive/repeated requests, or further copies of the same information. Alternatively,
the law may allow us to refuse to act on the request.
Periodically, BDSLCCI will update the Privacy Policy Statement to incorporate input from the business and its clients. As required by law, we will keep you informed of any significant changes to this policy. An updated version will also be available on our website. It is recommended that you periodically examine this Policy Statement to understand how BDSLCCI is handling the security of your data.