ISO 27001 Compliance Standards

Privacy Policy

Last Updated: December 2025

At SecureGen Systems, we treat your data with the same security-first approach we apply to cloud infrastructure.

1. Introduction

SecureGen Systems Pvt Ltd ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or engage with our DevOps and Cloud Security services.

Security-First Philosophy

As cybersecurity professionals, we apply enterprise-grade security controls to protect your personal data, following Zero Trust principles and encryption-at-rest standards.

2. Information We Collect

2.1 Personal Information

We collect information that you voluntarily provide when:

  • Contact us via forms for DevOps assessments
  • Schedule consultations for Cloud Security services
  • Subscribe to our technical newsletters
  • Engage us for Fractional CTO/CISO services
Data Type Examples Purpose
Contact Information Name, email, phone, company Service communication
Technical Information Cloud provider, tech stack, deployment frequency Service delivery
Communication Data Emails, chat logs, meeting notes Service improvement

3. How We Use Your Information

Service Delivery

  • DevOps maturity assessments
  • Cloud Security consultations
  • Fractional CTO/CISO services
  • Technical recommendations

Communication

  • Respond to inquiries
  • Send technical updates
  • Schedule consultations
  • Share security advisories

Legal Basis for Processing

Contract

To fulfill service agreements

Consent

When you opt-in for communications

Legitimate Interest

Service improvement & security

4. Data Sharing & Disclosure

4.1 Third-Party Service Providers

We engage trusted partners who adhere to similar security standards:

Hosting & Infrastructure

AWS/GCP/Azure with encryption-at-rest

Communication Tools

FormSubmit for secure form handling

4.2 Data Protection Agreements

All third-party providers sign Data Processing Addendums (DPAs) and maintain SOC2/ISO 27001 certifications where applicable.

5. Security Measures

As cybersecurity specialists, we implement enterprise-grade security controls:

Encryption

AES-256 encryption for data at rest, TLS 1.3 for data in transit

Access Controls

Role-based access, multi-factor authentication, just-in-time privileges

Audit & Monitoring

Comprehensive logging, SIEM integration, regular security audits

Incident Response

We maintain an ISO 27001-aligned incident response plan. In the event of a data breach, we will:

  1. Notify affected individuals within 72 hours
  2. Work with cybersecurity forensics experts
  3. Implement remediation measures
  4. Provide transparency throughout the process

6. Your Data Protection Rights

Right to Access

Request copies of your data

Right to Rectification

Correct inaccurate information

Right to Erasure

Request data deletion

Right to Object

Object to processing

Exercising Your Rights

To exercise any of these rights, contact our Data Protection Officer at privacy@securegensystems.com

We respond to all legitimate requests within 30 days. No fee is charged for reasonable requests.

7. Data Retention

We retain personal data only as long as necessary for the purposes outlined in this policy:

Contact information 24 months after last contact
Service agreements 7 years for legal compliance
Technical assessment data 12 months after assessment

8. International Data Transfers

Cross-Border Processing

As a global DevOps and Security consultancy, we may process data across borders. All transfers comply with:

  • EU Standard Contractual Clauses (SCCs)
  • India's Digital Personal Data Protection Act 2023
  • APEC Cross-Border Privacy Rules

9. Policy Updates

We may update this Privacy Policy periodically. We will notify you of any material changes by:

  • Posting the updated policy on our website
  • Sending email notifications for significant changes
  • Updating the "Last Updated" date at the top

Continued use of our services after updates constitutes acceptance of the revised policy.

10. Contact Information

Data Protection Officer

For privacy-related inquiries

privacy@securegensystems.com

SecureGen Systems Pvt Ltd

Mumbai, Maharashtra 400001

India

General Inquiries

For service-related questions

engineering@securegensystems.com +91 76667 33111

Response Time Commitment

We acknowledge all privacy inquiries within 48 hours and provide substantive responses within 30 days, as required by applicable regulations.